Patent · US Active

System and method for detecting malware by transforming objects and analyzing different views of objects

US8769692B1 · kind B1 · utility

22Cited by
6References
28Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJul 14, 2011
Grant dateJul 1, 2014
Priority date
Expiry dateJan 20, 2032

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L67/02
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A method in one example implementation includes generating a plurality of transformed views of an object in a network environment and generating a plurality of filtered information sets. The method further includes detecting a suspect correlation based on an analysis of at least some of the plurality of transformed views and of at least some of the plurality of filtered information sets. In a more specific embodiment, the analysis includes an original view of the object. Other more specific embodiments include applying filters to selected views of the object, where each of the filters is associated with a different obfuscation type. Applying the filters includes transforming obfuscation elements in the plurality of transformed views, where the object contains the one or more obfuscation elements.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.