Method and apparatus for securing a computer from malicious threats through generic remediation
First Claim
Patent Images
1. A method for securing a computer from malicious threats through generic remediation, comprising:
- processing, using at least one computer processor, at least one malicious threat to the computer, wherein the at least one malicious threat is not associated with a specific remediation technique;
examining information regarding prior remediation of the at least one malicious threat by at least one computer, wherein the information regarding prior remediation comprises remediation information that indicates remediation techniques used by a plurality of computers for a plurality of malicious threats and a success level of the plurality of computers that previously applied at least one generic remediation technique for the plurality of malicious threats;
determining at least one generic remediation technique for the at least one malicious threat based at least in part on the information regarding prior remediation;
applying the at least one generic remediation technique; and
updating the information regarding prior remediation based at least in part on the at least one applied generic remediation technique.
3 Assignments
0 Petitions
Accused Products
Abstract
A method and apparatus for securing a computer from malicious threats through generic remediation is described. In one embodiment, the method for securing a computer from malicious threats through generic remediation includes processing at least one malicious threat to the computer, wherein the at least one malicious threat is not associated with a specific remediation technique and examining information regarding prior remediation of the at least one malicious threat by at least one computer to determine at least one remediation technique for the at least one malicious threat.
43 Citations
19 Claims
-
1. A method for securing a computer from malicious threats through generic remediation, comprising:
-
processing, using at least one computer processor, at least one malicious threat to the computer, wherein the at least one malicious threat is not associated with a specific remediation technique; examining information regarding prior remediation of the at least one malicious threat by at least one computer, wherein the information regarding prior remediation comprises remediation information that indicates remediation techniques used by a plurality of computers for a plurality of malicious threats and a success level of the plurality of computers that previously applied at least one generic remediation technique for the plurality of malicious threats; determining at least one generic remediation technique for the at least one malicious threat based at least in part on the information regarding prior remediation; applying the at least one generic remediation technique; and updating the information regarding prior remediation based at least in part on the at least one applied generic remediation technique. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11)
-
-
12. An apparatus for securing a computer from malicious threats through generic remediation, comprising:
at least one computer processor communicatively coupled to memory, wherein the at least one computer processor is configured to; execute a manager configured to process at least one malicious threat to the computer, wherein the at least one malicious threat is not associated with a specific remediation technique; examine information regarding prior remediation of the at least one malicious threat by at least one computer, wherein the information regarding the prior remediation comprises remediation information that indicates remediation techniques used by a plurality of computers for a plurality of malicious threats and a success level of the plurality of computers that previously applied at least one generic remediation technique for the plurality of malicious threats; and determine at least one generic remediation technique for the at least one malicious threat based at least in part on the information regarding prior remediation; applying the at least one generic remediation technique; and updating the information regarding prior remediation based at least in part on the at least one applied generic remediation technique. - View Dependent Claims (13, 14, 15)
-
16. A system for securing a computer from malicious threats through generic remediation, comprising:
-
a client comprising; a manager for communicating a query that identifies at least one malicious threat not associated with a specific remediation technique, the manager configured to; examine information regarding prior remediation of the at least one malicious threat by at least one computer, wherein the information regarding the prior remediation comprises remediation information that indicates remediation techniques used by a plurality of computers for a plurality of malicious threats and a success level of the plurality of computers that previously applied at least one generic remediation technique for the plurality of malicious threats, determine at least one generic remediation technique for the at least one malicious threat based at least in part on the information regarding prior remediation, wherein information regarding prior remediation indicates a success level of the plurality of computers previously applied at least one generic remediation technique for the plurality of malicious threats, applying the at least one generic remediation technique, and updating the information regarding prior remediation as needed based at least in part on the at least one applied generic remediation technique; and a server, coupled to the client, comprising; storage comprising the remediation information regarding remediation techniques used by a plurality of computers for a plurality of malicious threats, wherein the query is compared with remediation information to access the information regarding prior remediation of the at least one malicious threat by the at least one computer. - View Dependent Claims (17, 18, 19)
-
Specification