Evaluating malware in a virtual machine using copy-on-write
US10019575B1 · kind B1 · utility
Assignee
Inventors
Key dates
| Filing date | Jul 30, 2013 |
| Grant date | Jul 10, 2018 |
| Priority date | — |
| Expiry date | Dec 26, 2035 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F2009/45587
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
Evaluating a potentially malicious sample using a copy-on-write overlay is disclosed. A first virtual machine instance is initialized as a copy-on-write overlay associated with an original virtual machine image. The first virtual machine image is started and a first sample is executed. A second virtual machine instance is initialized as a copy-on-write overlay associated with a second original virtual machine image. The second virtual machine image is started and a second sample is executed. The first and second samples are executed at an overlapping time.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.