Patent · US Active

System and method for detecting time-bomb malware

US10083302B1 · kind B1 · utility

149Cited by
175References
20Claims
0Family size

Assignee

Inventors

Key dates

Filing dateDec 29, 2016
Grant dateSep 25, 2018
Priority date
Expiry dateDec 29, 2036

Classification

  • Technology area (CPC Y)Emerging Cross-Sectional Technologies
  • CPC primaryY02W10/30
  • WIPO fieldChemical engineering
  • WIPO sectorChemistry

Abstract

According to one embodiment, a system comprises one or more counters; comparison logic; and one or more hardware processors communicatively coupled to the one or more counters and the comparison logic. The one or more hardware processors are configured to instantiate one or more virtual machines that are adapted to analyze received content, where the one or more virtual machines are configured to monitor a delay caused by one or more events conducted during processing of the content and identify the content as including malware if the delay exceed a first time period.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.