The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Jul. 28, 2015

Filed:

Dec. 07, 2012
Applicant:

Bromium, Inc., Cupertino, CA (US);

Inventors:

Rahul C Kashyap, Foster City, CA (US);

J. McEnroe Samuel Navaraj, Bangalore, IN;

Baibhav Singh, Ranchi, IN;

Arun Passi, Noida, IN;

Rafal Wojtczuk, Warsaw, PL;

Assignee:

Bromium, Inc., Cupertino, CA (US);

Attorneys:
Primary Examiner:
Assistant Examiner:
Int. Cl.
CPC ...
G06F 21/00 (2013.01); G06F 21/56 (2013.01); G06F 9/455 (2006.01);
U.S. Cl.
CPC ...
G06F 21/566 (2013.01); G06F 9/45533 (2013.01);
Abstract

The execution of a process within a VM may be monitored, and when a trigger event occurs, additional monitoring is initiated, including storing behavior data describing the real-time events taking place inside the VM. This behavior data may then be compared to information about the expected behavior of that type of process in order to determine whether malware has compromised the VM. The trigger event may be analyzed in relation to a set of heuristics, and based on the analysis, a data collection process may be initiated wherein the data comprises information about events occurring in the first virtual machine.


Find Patent Forward Citations

Loading…