Method and system for detecting and countering malware in a computer
US8701162B1 · kind B1 · utility
12Cited by
1References
18Claims
0Family size
Assignee
Inventor
Key dates
| Filing date | Nov 2, 2010 |
| Grant date | Apr 15, 2014 |
| Priority date | — |
| Expiry date | Jul 10, 2031 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06F21/564
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
An arrangement analyzes a data stream to identify particular token sequences known to be of interest or malware. A preprocessing step organizes the malware tokens into a “graph” in which overlapping token sequences are interconnected with logic splices. The preprocessing is performed only once for a given set of malware targets. The resulting graph can be traversed quickly in runtime operation to identify malware token strings in the data stream.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.