The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jan. 20, 2026

Filed:

Sep. 30, 2021
Applicant:

Acronis International Gmbh, Schaffhausen, CH;

Inventors:

Alexey Malanov, Singapore, SG;

Serguei Beloussov, Singapore, SG;

Stanislav Protasov, Singapore, SG;

Assignee:

Acronis International GmbH, Schaffhausen, CH;

Attorney:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 9/448 (2018.01); G06F 21/55 (2013.01); G06F 21/56 (2013.01); G06F 21/57 (2013.01);
U.S. Cl.
CPC ...
G06F 21/566 (2013.01); G06F 9/4498 (2018.02); G06F 21/552 (2013.01); G06F 21/554 (2013.01); G06F 21/577 (2013.01); G06F 2221/034 (2013.01);
Abstract

A system and method are disclosed for identifying malicious activity on a target device based on behavior analysis of the target device. The system includes a behavioral analyzer run on a virtual machine connected to the target device. The virtual machine collects system events and parameters from the target device and run a script, independent of the target device, to detect a threat. The script is a set of instructions executed to analyze behavior of an object by processing and correlating the events. The script includes a rule structure which stores signatures and expressions of the known malwares. By correlating the selected event parameters with known malware parameters, it is determined whether the event imposes a threat or not. A finite state machine is used for the state transition table.


Find Patent Forward Citations

Loading…