The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Apr. 28, 2015

Filed:

Feb. 28, 2007
Applicants:

Cormac E. Herley, Bellevue, WA (US);

Brian W. Keogh, Bellevue, WA (US);

Aaron Michael Hulett, Redmond, WA (US);

Adrian M. Marinescu, Sammamish, WA (US);

Jeffrey S. Williams, Seattle, WA (US);

Stanislav Nurilov, Ft. Monmouth, NJ (US);

Inventors:

Cormac E. Herley, Bellevue, WA (US);

Brian W. Keogh, Bellevue, WA (US);

Aaron Michael Hulett, Redmond, WA (US);

Adrian M. Marinescu, Sammamish, WA (US);

Jeffrey S. Williams, Seattle, WA (US);

Stanislav Nurilov, Ft. Monmouth, NJ (US);

Assignee:
Attorneys:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 21/56 (2013.01);
U.S. Cl.
CPC ...
G06F 21/565 (2013.01); G06F 21/564 (2013.01); G06F 21/568 (2013.01);
Abstract

A system and method that facilitates and effectuates detection of malware secreted and/or hidden in plain sight on a machine. The system and method in order to achieve its aims generates a list of all loaded modules, identifies from the list a set of modules common to more than a threshold number of processes, and eliminates from the list those modules included in an authentication list. The resultant list is prioritized based, in one instance, on the number of occurrences a particular module makes in the resultant list, and thereafter the list is distributed analyst workstations.


Find Patent Forward Citations

Loading…