×

Method and system for tracking machines on a network using fuzzy guid technology

  • US 10,027,665 B2
  • Filed: 09/12/2016
  • Issued: 07/17/2018
  • Est. Priority Date: 11/28/2005
  • Status: Active Grant
First Claim
Patent Images

1. An apparatus for tracking machines on a network of computers, the apparatus comprising at least one processor and at least one memory storing computer code that, when executed by the at least one processor, causes the apparatus to:

  • identify a malicious host coupled to the network of computers;

    determine a first IP address and a first set of one or more attributes associated with the malicious host during a first time period, wherein the first set of one or more attributes comprises information about activities performed by the malicious host during the first time period;

    classify the malicious host to be in a determined state;

    during a second time period, classify the malicious host to be in a latent state;

    identify an unknown host during the second time period, the unknown host being associated with a second IP address and a second set of one or more attributes, wherein the second set of one or more attributes comprises information about activities performed by the unknown host during the second time period;

    process the second IP address and the second set of one or more attributes of the unknown host with the first IP address and the first set of one or more attributes of the malicious host; and

    determine, based on the processing of the second IP address and the second set of one or more attributes of the unknown host with the first IP address and the first set of one or more attributes of the malicious host, if the malicious host has moved from the first IP address to the second IP address, thereby identifying if the unknown host is the malicious host.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×