Electrical computers and digital processing systems: support – Multiple computer communication using cryptography – Protection at a particular protocol layer
Reexamination Certificate
2005-12-06
2005-12-06
Song, Hosuk (Department: 2135)
Electrical computers and digital processing systems: support
Multiple computer communication using cryptography
Protection at a particular protocol layer
C713S188000, C713S152000, C713S152000, C714S025000, C714S028000, C714S038110, C714S039000, C707S793000, C709S223000, C709S224000
Reexamination Certificate
active
06973577
ABSTRACT:
A system and a method for dynamically detecting computer viruses through associative behavioral analysis of runtime state are described. A group of monitored events is defined. Each monitored event includes a set of one or more actions defined within an object. Each action is performed by one or more applications executing within a defined computing environment. The runtime state within the defined computing environment is continuously monitored for an occurrence of any one of the monitored events in the group. The sequence of the execution of the monitored events is tracked for each of the applications. Each occurrence of a specific event sequence characteristic of computer virus behavior and the application that performed the specific event sequence, are identified. A histogram describing the specific event sequence occurrence for each of the applications is created. Repetitions of the histogram associated with at least one object are identified.
REFERENCES:
patent: 5278901 (1994-01-01), Shieh et al.
patent: 5398196 (1995-03-01), Chambers
patent: 5684875 (1997-11-01), Ellenberger
patent: 5842002 (1998-11-01), Schnurer et al.
patent: 5960170 (1999-09-01), Chen et al.
patent: 6088804 (2000-07-01), Hill et al.
patent: 6279113 (2001-08-01), Vaidya
patent: 6338141 (2002-01-01), Wells
patent: 6357008 (2002-03-01), Nachenberg
patent: 6405318 (2002-06-01), Rowland
patent: 6711583 (2004-03-01), Chess et al.
patent: 6874087 (2005-03-01), Fetkovich et al.
patent: 2001/0039579 (2001-11-01), Trcka et al.
patent: 08044556 (1996-02-01), None
Le Charlier et al. Dynamic detection and classification of computer viruses using general behaviour patterns, Jul. 2, 1995.
Copy of Office Action Summary from U.S. Appl. No. 09/846,103 which was mailed on Mar. 11, 2005.
Dada Beemnet W
Hamaty Christopher J.
McAfee, Inc.
Song Hosuk
Zilka-Kotab, PC
LandOfFree
System and method for dynamically detecting computer viruses... does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with System and method for dynamically detecting computer viruses..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and System and method for dynamically detecting computer viruses... will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-3515633