CONTEXTUAL VIRTUAL MACHINES FOR APPLICATION QUARANTINE AND ASSESSMENT METHOD AND SYSTEM
First Claim
1. A system, comprising:
- a computer readable medium operable to store computer executable instructions;
a processor in communication with the computer readable medium, the processor operable to execute the computer executable instructions to perform operations comprising;
installing downloaded content in at least one of a first quarantine partition and a multi-partition space of a plurality of quarantine partitions and/or multi-partition spaces stored in the computer readable medium, wherein the at least one of a first quarantine partition and multi-partition space comprises a first set of capabilities that is more restrictive than a second set of capabilities of at least one of a second quarantine partition and multi-partition space of the plurality of quarantine partitions and/or multi-partition spaces;
executing the downloaded content in the at least one of a first quarantine partition and multi-partition space;
monitoring execution of the downloaded content in the at least one of a first quarantine partition and multi-partition space to generate monitored information; and
storing monitored information of the downloaded content in the computer readable medium.
18 Assignments
0 Petitions
Accused Products
Abstract
Described are embodiments that provide for the use of multiple quarantine partitions and/or multi-partition spaces (e.g., virtual machines) for initially installing and running downloaded content. The downloaded content can be run securely in the quarantine partitions and/or multi-partition spaces. Each quarantine partition and/or multi-partition space can be configured differently with different capabilities. Based on the configuration and capabilities of the quarantine partitions and/or multi-partition spaces, the downloaded content may have limited capabilities to access secure data, applications, or other code limiting the damage that the content can potentially cause.
434 Citations
20 Claims
-
1. A system, comprising:
-
a computer readable medium operable to store computer executable instructions; a processor in communication with the computer readable medium, the processor operable to execute the computer executable instructions to perform operations comprising; installing downloaded content in at least one of a first quarantine partition and a multi-partition space of a plurality of quarantine partitions and/or multi-partition spaces stored in the computer readable medium, wherein the at least one of a first quarantine partition and multi-partition space comprises a first set of capabilities that is more restrictive than a second set of capabilities of at least one of a second quarantine partition and multi-partition space of the plurality of quarantine partitions and/or multi-partition spaces; executing the downloaded content in the at least one of a first quarantine partition and multi-partition space; monitoring execution of the downloaded content in the at least one of a first quarantine partition and multi-partition space to generate monitored information; and storing monitored information of the downloaded content in the computer readable medium. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9)
-
-
10. A method for executing an application on a mobile device, the method comprising:
-
determining a first user context of a user of the mobile device; installing downloaded content in a first at least one of a quarantine partition and a multi-partition space of a plurality of quarantine partitions and/or a multi-partition spaces stored in a computer readable medium of the mobile device, wherein the first at least one of a quarantine partition and a multi-partition space is associated with the first user context and each of the plurality of quarantine partitions and a multi-partition spaces is associated with a different user context of the user; executing the downloaded content in the first at least one of a quarantine partition and multiple-partition space; monitoring execution of the downloaded content in the first at least one of a quarantine partition and multiple-partition space to generate monitored information; and storing monitored information of the downloaded content in a computer readable medium. - View Dependent Claims (11, 12, 13, 14, 15, 16)
-
-
17. A computer readable medium including computer executable instructions stored onto the computer readable medium which, when executed by one or more processors of a computer, causes the computer to perform operations comprising:
-
determining a first user context; installing an downloaded content in a first at least one of a quarantine partition and multi-partition space of a plurality of quarantine partitions and/or multi-partition spaces stored in a computer readable medium of the computer, wherein the first at least one of a quarantine partition and multi-partition space is associated with the first context; executing the first downloaded content in the first at least one of a quarantine partition and multi-partition space; monitoring execution of the first downloaded content in the first at least one of a quarantine partition and multi-partition space; storing first monitored information of the first downloaded content in a computer readable medium; determining a second user context; installing a second downloaded content in a second at least one of a quarantine partition and multi-partition space of the plurality of quarantine partitions and/or multi-partition spaces stored in the computer readable medium, wherein the second at least one of a quarantine partition and/or multi-partition space is associated with the second user context, wherein the first at least one of a quarantine partition and multi-partition space comprises a first set of capabilities that is more restrictive than a second set of capabilities of the second at least one of a quarantine partition and multi-partition space of the plurality of quarantine partitions and/or multi-partition spaces; executing the second downloaded content in the second at least one of a quarantine partition and multi-partition space; monitoring execution of the second downloaded content in the second at least one of a quarantine partition and multi-partition space; and storing second monitored information of the second downloaded content in the storage medium. - View Dependent Claims (18, 19, 20)
-
Specification