×

System, method and computer program product for context-driven behavioral heuristics

  • US 8,392,994 B2
  • Filed: 03/28/2011
  • Issued: 03/05/2013
  • Est. Priority Date: 01/14/2005
  • Status: Active Grant
First Claim
Patent Images

1. A method, comprising:

  • receiving a request to open a file in a computer;

    scanning the file;

    determining whether unwanted data is present in the file by;

    comparing data in the file with a plurality of signatures representative of certain types of unwanted data;

    evaluating a context associated with the scanning activities using a state machine,wherein a context ID is established for the context and associated with the file, the context ID being related to attempts by the file to initiate activities in the computer; and

    detecting additional data, which is unwanted, by monitoring a behavior of data in the computer and determining an additional context, using a state machine, based on the monitoring of the behavior of data; and

    communicating a sample of the file to a virus signature service provider to be used in generating an exact signature that encompasses all of the contexts associated with the file.

View all claims
  • 9 Assignments
Timeline View
Assignment View
    ×
    ×