Patent · US Active

Malware detection system based on stored data

US9654492B2 · kind B2 · utility

26Cited by
11References
25Claims
0Family size

Assignee

Inventors

Key dates

Filing dateJan 29, 2016
Grant dateMay 16, 2017
Priority date
Expiry dateJan 29, 2036

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/20
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A malware detection system based on stored data that analyzes an electronic message for threats by comparing it to previously received messages in a message archive or to a contacts list. Threat protection rules may be generated dynamically based on the message and contacts history. A message that appears suspicious may be blocked, or the system may insert warnings to the receiver not to provide personal information without verifying the message. Threat checks may look for unknown senders, senders with identities that are similar to but not identical to previous senders or to known contacts, or senders that were added only recently as contacts. Links embedded in messages may be checked by comparing them to links previously received or to domain names of known contacts. The system may flag messages as potential threats if they contradict previous messages, or if they appear unusual compared to the patterns of previous messages.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.