Malware detection based on traffic analysis
US9215239B1 · kind B1 · utility
64Cited by
46References
31Claims
0Family size
Assignee
Inventors
Key dates
| Filing date | Sep 28, 2012 |
| Grant date | Dec 15, 2015 |
| Priority date | — |
| Expiry date | Jan 27, 2033 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L63/1433
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
Detecting malware is disclosed. A candidate malware application is caused to be executed using a virtual machine. Traffic analysis is performed on network traffic associated with the execution of the candidate malware application. A determination is made as to whether the candidate malware application is malicious or not, based at least in part on the traffic analysis and an application type associated with the candidate malware application.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.