Patent · US Active

Malware analysis and recovery

US10931685B2 · kind B2 · utility

1Cited by
13References
17Claims
0Family size

Assignee

Inventor

Key dates

Filing dateDec 11, 2017
Grant dateFeb 23, 2021
Priority date
Expiry dateJul 14, 2038

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06N20/00
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A system and method detects malware by processing notifications from an intrusion detection system and baseline snapshots from an image capture utility. The image capture utility constructs an image of the suspected malware intrusion and links the suspected malware intrusion to the baseline snapshots. The system and method propagates the image of the suspected malware intrusion across multiple networks before it distinguishes malicious code, device state, and files from benign code, device state, and files. Some systems and methods include a malware recovery system that executes machine learning instructions and heuristics to revert a client and/or a remote server to one or more baseline snapshots.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.