×

Method and system for tracking machines on a network using fuzzy guid technology

  • US 9,449,168 B2
  • Filed: 06/06/2014
  • Issued: 09/20/2016
  • Est. Priority Date: 11/28/2005
  • Status: Active Grant
First Claim
Patent Images

1. A method tracking machines on a network of computers, the method comprising:

  • identifying a malicious host coupled to the network of computers;

    determining a first IP address and one or more first attributes associated with the malicious host during a first time period, wherein the one or more first attributes includes first behavior information associated with the malicious host during the first time period;

    classifying the malicious host to be in a determined state;

    determining that the malicious host is in a latent state during a second time periods;

    identifying an unknown host during the second time period when the malicious host is in the latent state, the unknown host being associated with a second IP address and one or more second attributes, wherein the one or more second attributes includes second behavior information associated with the unknown host during the second time period;

    processing the second IP address and the one or more second attributes of the unknown host with the first IP address and the one or more first attributes of the malicious host; and

    determining if the unknown host is the malicious host based on results of the processing of the second IP address and the one or more second attributes of the unknown host with the first IP address and the one or more first attributes of the malicious host.

View all claims
  • 1 Assignment
Timeline View
Assignment View
    ×
    ×