Malware detection based on traffic analysis
US9942251B1 · kind B1 · utility
2Cited by
34References
32Claims
0Family size
Assignee
Inventors
Key dates
| Filing date | Oct 30, 2015 |
| Grant date | Apr 10, 2018 |
| Priority date | — |
| Expiry date | Oct 30, 2035 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L63/1433
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
Detecting malware is disclosed. A candidate malware application is caused to be executed using a virtual machine. Traffic analysis is performed on network traffic associated with the execution of the candidate malware application. A determination is made as to whether the candidate malware application is malicious or not, based at least in part on the traffic analysis and an application type associated with the candidate malware application.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.