U.S. patents available from 1976 to present.
U.S. patent applications available from 2005 to present.

Icon_funbox Quotables

"The abolishment of pain in surgery is a chimera. It is absurd to go on seeking it...knife and pain are two words in surgery that must forever be associated in the consciousness of the patient."

Dr. Alfred Velpeau, French surgeon ; 1839

Newsletter  PatentStorm News

Make the Most of Our Site

See this month's Top Inventors and Most Cited Patents.

Stay on top of the latest innovations by subscribing to an RSS feed.

Registered users: Manage your profile.

 

Class 726/24 - Virus detection


Subclass of Class 726 - Information security
Definition: Subject matter wherein the intruder is a virus.
No. of patents: 599
Last issue date: 05/29/2012


1                      
NumberTitleIssue Date
8191146Virus localization using cryptographic hashing
Methods for using integrity checking techniques to identify and locate computer viruses are provided. A method for virus localization for each of three types of virus infections is provided, including the steps of computing a sequence of file blocks, calculating has...
05/29/2012
8191148Classifying a message based on fraud indicators
Systems, methods, and media for classifying messages are disclosed. A plurality of fraud indicators are identified in the message. A signature of the message is generated. The generated signature of the message is compared to a stored signature. The stored signature...
05/29/2012
8191145Virus immunization using prioritized routing
An apparatus, device, methods, computer program product, and system are described that determine a virus associated with communication data on a communications network, the communications network associated with at least one network policy device, associate an anti-...
05/29/2012
8191147Method for malware removal based on network signatures and file system artifacts
A network communication corresponding to a malicious network signature associated with malicious code is detected on a host computer system. A determination is made whether or not the malicious network signature is validated as associated with a non-malicious code p...
05/29/2012
8180761Referrer context aware target queue prioritization
A computer, computer program product, and method prioritize a web crawler target link queue using referrer context information associated with a remote object link. An access statistics collection module detects links to remote objects and retrieves referrer context...
05/15/2012
8176558Anti-virus method, computer, and recording medium
In one computer system, causing the second virtual machine, which executes antivirus software for detecting and removing the virus, to monitor at least one first virtual machine that is created on the computer and execute one or more application program, periodicall...
05/08/2012
8176559Obfuscated malware detection
Methods, systems, and apparatus, including computer programs encoded on a computer storage medium, for obfuscated malware. In one aspect, a method includes executing from a binary executable a call instruction and a plurality of instruction subsequent to a target of...
05/08/2012
8171554System that provides early detection, alert, and response to electronic threats
The invention is a computer system that provides early detection alert and response to electronic threats (eThreats) in large wide area networks, e.g. the network of an Internet Services Provider or a Network Services Provider. The system of the invention accomplish...
05/01/2012
8171553Heuristic based capture with replay to virtual machine
A suspicious activity capture system can comprise a tap configured to copy network data from a communication network, and a controller. The controller is coupled to the tap and is configured to receive the copy of the network data from the tap, analyze the copy of t...
05/01/2012
8171551Malware detection using external call characteristics
A malware scanner 2, for malware such as computer viruses, worms, Trojans and the like, utilizes the external call characteristics associated with known items of malware to identify the presence of malware within a computer file. Malware written in a high lev...
05/01/2012
8171552Simultaneous execution of multiple anti-virus programs
An anti-virus program executes simultaneously with another anti-virus program by accessing a function (target) driver in the driver model directly instead of traversing each filter driver in the driver model as is conventionally done. The filter driver component of ...
05/01/2012
8166547Method, apparatus, signals, and medium for managing a transfer of data in a data network
A method and apparatus for managing a transfer of data in a data network identifies data associated with a communication session between a first node and a second node in the data network. Further processing of the communication session occurs when a portion of the ...
04/24/2012
8166546Controlling computer program, controlling apparatus, and controlling method for detecting infection by computer virus
A computer program for a controlling apparatus intended to control an image forming apparatus, executes a procedure of confirming each program running on the controlling apparatus. The computer program executes procedure of judging a program, which is not included i...
04/24/2012
8166548Computer system and method for scanning computer virus
According to the present invention, a timeout caused by executing a virus scan is avoided. A computer system has a first computer, a second computer coupled to the first computer, and a storage system coupled to the first computer and the second computer. The first ...
04/24/2012
8166550Detection of undesired computer files in damaged archives
Systems and methods for an anti-virus detection module that can detect known undesired computer files in damaged archives that may be encrypted, compressed and/or password-protected are provided. According to one embodiment, a damaged or incomplete RAR, CAB or ZIP a...
04/24/2012
8166549Hash-based systems and methods for detecting and preventing transmission of polymorphic network worms and viruses
A system (200) detects transmission of potentially malicious packets. The system (200) receives, or otherwise observes, packets and generates hash values based on variable-sized blocks of the packets. The system (200) then compares the generated...
04/24/2012
8161557System and method of caching decisions on when to scan for malware
In accordance with this invention, a system, method, and computer-readable medium that selectively scans files stored on a computing device for malware is provided. One aspect of the present invention includes identifying files that need to be scanned for malware wh...
04/17/2012
8161556Context-aware real-time computer-protection systems and methods
A computer-implemented method for determining, in response to an event of interest, whether to perform a real-time file scan by examining the full context of the event of interest may comprise: 1) detecting an event of interest, 2) identifying at least one file asso...
04/17/2012
8151352Anti-malware emulation systems and methods
In some embodiments, antivirus/malware behavior-based scanning (emulation) is accelerated by identifying known code sequences and executing pre-stored native-code routines (e.g. decompression, decryption, checksum routines) implementing the functionality of the know...
04/03/2012
8151353Multi-network virus immunization with trust aspects
An apparatus, device, methods, computer program product, and system are describe that determine a virus associated with a communications network, and distribute an anti-viral agent onto the communications network using a bypass network, the bypass network configured...
04/03/2012
8151354Detecting and addressing network attacks
A method and system are provided for preventing network service shutdowns resulting from denial of service (DOS) attacks. First, parameters are monitored corresponding to network elements carrying communication signal traffic in a communications network, and, based ...
04/03/2012
8151355Detection of undesired computer files in archives
Systems and methods that can detect known undesired computer files in protected archives are provided. According to one embodiment, an archive file in transit across a network as an attachment to an email message destined for a client workstation is scanned, without...
04/03/2012
8146161Multi-network virus immunization with separate physical path
An apparatus, device, methods, computer program product, and system are described that determine a virus associated with a communications network, and distribute an anti-viral agent onto the communications network using a bypass network, the bypass network configure...
03/27/2012
8146162System and method for acceleration of malware detection using antivirus cache
Disclosed are systems, methods and computer program products for acceleration of computer malware detection system using antivirus cache. The system provides an antivirus cache in a non-volatile system memory that may be updated with information from an antivirus da...
03/27/2012
8141157Method and system for managing computer security information
A security management system includes a fusion engine which “fuses” or assembles information from multiple data sources and analyzes this information in order to detect relationships between raw events that may indicate malicious behavior and to provide an organ...
03/20/2012
8136162Intelligent network interface controller
A network interface device includes a security database and a security services engine. The security database is configured to store patterns corresponding to predetermined malware. The security services engine is configured to compare data to be transmitted through...
03/13/2012
8132258Remote security servers for protecting customer computers against computer security threats
A client computer may be configured to perform computer security operations in conjunction with a remotely located security server. Upon detection of a computer security event, such as reception of a file, the client computer may generate a query input and determine...
03/06/2012
8127358Thin client for computer security applications
A system for scanning a file for malicious codes may include a client agent running in a client computer and a scan server running in a server computer, the client computer and the server computer communicating over a computer network. The client agent may be config...
02/28/2012
8122507Efficient scanning of objects
Scanning is disclosed. A scan collection period is determined. A system is monitored to detect object events during the scan collection period, and differential and incremental scan lists may be updated with information regarding objects to be scanned, based on some...
02/21/2012
8122508Analyzing traffic patterns to detect infectious messages
Managing electronic messages comprises receiving a message, forwarding the message, determining that the forwarded message is infectious after the message has been forwarded and preventing the infectious forwarded message from spreading. ...
02/21/2012
8122509Method for accelerating hardware emulator used for malware detection and analysis
A method and system for accelerating malware emulator by using an accelerator. The accelerator allows for a potentially malicious component (i.e., process) containing dummy processes to be executed in a real CPU of a computer system using its operating memory. A spe...
02/21/2012
8117659Malicious code infection cause-and-effect analysis
A malware analysis system for automating cause and effect analysis of malware infections is provided. The malware analysis system monitors and records computer system activities. Upon being informed of a suspected malware infection, the malware analysis system creat...
02/14/2012
8112806Detecting network interface card level malware
Computers are monitored for malware communicating directly with the NIC. The infection of computers with NIC level malware is detected. Operating system level network packet transmission statistics are monitored, as are transmission counters maintained by the NIC. T...
02/07/2012
8104088Trusted operating environment for malware detection
Techniques and apparatuses for scanning a computing device for malware are described. In one implementation, a trusted operating environment, which includes a trusted operating system and a trusted antivirus tool, is embodied on a removable data storage medium. A co...
01/24/2012
8104089Tracking memory mapping to prevent packers from evading the scanning of dynamically created code
To detect possible malicious code that is unpacked at runtime before it is executed, antivirus software requires that any dynamically created code be scanned before it can be executed by a host computer system. This requirement may be enforced by requiring memory pa...
01/24/2012
8104090Method and system for detection of previously unknown malware components
A system, method, and computer program product for identifying malware components on a computer, including detecting an attempt to create or modify an executable file or an attempt to write to a system registry; logging the attempt as an auditable event; performing ...
01/24/2012
8099785Method and system for treatment of cure-resistant computer malware
A system, method and computer program product for treating a malware in a computer having multiple copies of the same malicious code activated, where the multiple copies monitor each other's existence, including (a) identifying a presence of the malicious code on th...
01/17/2012
8091136Packet transfer device, packet transfer method, and program
A packet transfer apparatus is provided with: storage means configured to store a predetermined search pattern and an address identifying a predetermined apparatus; determination means configured to determine whether predetermined data in a packet received from a ne...
01/03/2012
8091134System and method for autonomic peer-to-peer virus inoculation
A system, method, and program product is provided that communicates virus information between a computer that detects a virus in a file (the detecting computer system) and the computer that sent the infected file (the infected computer system). When the infected com...
01/03/2012
8091135Computer system and virus-scan method
A computer system uses a virus-scan method capable of full-scanning the logical volume of a SUTOSEN PC with high frequency while limiting the number of virus-scan devices. The computer system includes a primary volume storing data from a personal computer, a snapsho...
01/03/2012
1                      
 
Sign InRegister
Username  
Password   
forgot password?