System and method for mining execution traces with finite...

Data processing: artificial intelligence – Knowledge processing system

Reexamination Certificate

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

C706S014000, C706S012000

Reexamination Certificate

active

07072876

ABSTRACT:
A system and method by which novel, malicious execution traces may be detected by applying a combination of finite automation and heuristic analysis techniques. Such execution traces may be obtained by instrumenting system-level operating system calls, as well as by other techniques, such as, but not limited to, reading error log files, such as Windows NT event logs. With proper instrumentation, known good and known malicious programs may be run and their execution traces monitored. From such monitoring, a model may be derived, which can indicate those execution traces typically associated with malicious software. With this information, novel malicious programs which invoke execution traces similar to known malicious traces may be detected, and such programs may be stopped before significant damage can occur.

REFERENCES:
patent: 6668249 (2003-12-01), Kase et al.
patent: 6742015 (2004-05-01), Bowman-Amuah
patent: 6751661 (2004-06-01), Geddes
patent: 6799169 (2004-09-01), Coffman et al.
patent: 2003/0121027 (2003-06-01), Hines

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

System and method for mining execution traces with finite... does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with System and method for mining execution traces with finite..., we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and System and method for mining execution traces with finite... will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-3597153

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.