DETECTING MALWARE WITH HASH-BASED FINGERPRINTS
    242.
    发明申请

    公开(公告)号:US20180096149A1

    公开(公告)日:2018-04-05

    申请号:US15721244

    申请日:2017-09-29

    Inventor: Libor Morkovský

    Abstract: Detecting malware includes monitoring an event stream for an executable program, where the event stream includes a plurality of events such as API call events. A first plurality of hash values is determined for the event stream. In response to an occurrence of a trigger event in the event stream, the first plurality of hash values for the event stream can be compared with a second plurality of hash values that represents an event stream for a known malware executable. A determination can be made if a behavior represented by the first plurality of hash values is a permitted behavior based on the comparison.

    DETECTION OF DOMAIN NAME SYSTEM HIJACKING
    244.
    发明申请

    公开(公告)号:US20180007088A1

    公开(公告)日:2018-01-04

    申请号:US15638160

    申请日:2017-06-29

    Abstract: Detecting a Domain Name Service (DNS) hijacking includes resolving names in a hijack target group list to their respective Internet Protocol (IP) addresses. In response to determining that two names in the hijack target group list resolved to a common IP address, a determination is made whether a legitimate reason exists for the two names in the hijack target group list to resolve to the common IP address. In response to determining that a legitimate reason does not exist for the two names in the hijack target group list to resolve to a common IP address, a DNS hijacking is indicated.

    IDENTIFICATION OF MISLABELED SAMPLES VIA PHANTOM NODES IN LABEL PROPAGATION

    公开(公告)号:US20170169215A1

    公开(公告)日:2017-06-15

    申请号:US15374865

    申请日:2016-12-09

    Inventor: Martin Vejmelka

    CPC classification number: G06F21/53 G06F21/564

    Abstract: Systems and method identify potentially mislabeled file samples. A graph is created from a plurality of sample files. The graph includes nodes associated with the sample files and behavior nodes associated with behavior signatures. Phantom nodes are created in the graph for those sample files having a known label. During a label propagation operation, a node receives data indicating a label distribution of a neighbor node in the graph. In response to determining that the current label for the node is known, a neighborhood opinion is determined for the associated phantom node, based at least in part on the label distribution of the neighboring nodes. After the label propagation operation has completed, differences between the neighborhood opinion and the current label distribution for nodes are determined. If the difference exceeds a threshold, then the current label may be incorrect.

    METHOD AND SYSTEM FOR SECURING BANK ACCOUNT ACCESS
    247.
    发明申请
    METHOD AND SYSTEM FOR SECURING BANK ACCOUNT ACCESS 审中-公开
    用于保护银行帐户访问的方法和系统

    公开(公告)号:US20170070882A1

    公开(公告)日:2017-03-09

    申请号:US15122870

    申请日:2015-03-03

    Abstract: Methods, systems and devices for securing a bank account against an unauthorized access from a portable electronic device include or include using an auxiliary security device and a portable electronic device. The portable electronic device is adapted for controlling the bank account via the Internet. The auxiliary security device and the portable electronic device communicate via a Bluetooth protocol. Secure access to the bank account with the portable electronic device is based on a combination of information that is indicative of a key that is stored in the portable electronic device and data that is indicative of the key stored in the auxiliary security device that has been transmitted to the portable electronic device.

    Abstract translation: 用于固定银行账户以防止从便携式电子设备的未授权访问的方法,系统和设备包括或包括使用辅助安全设备和便携式电子设备。 便携式电子设备适于经由因特网来控制银行账户。 辅助安全设备和便携式电子设备通过蓝牙协议进行通信。 使用便携式电子设备对银行帐户的安全访问是基于指示存储在便携式电子设备中的密钥的信息的组合以及指示存储在辅助安全设备中已被传送的密钥的数据 到便携式电子设备。

    SELECTIVE DISK VOLUME CLONING FOR VIRTUAL DISK CREATION
    250.
    发明申请
    SELECTIVE DISK VOLUME CLONING FOR VIRTUAL DISK CREATION 有权
    虚拟磁盘创建的选择盘大容量克隆

    公开(公告)号:US20150186060A1

    公开(公告)日:2015-07-02

    申请号:US14581494

    申请日:2014-12-23

    Abstract: Systems and methods create virtual disks for access by a virtual machine. The virtual disk can be created from marked folders such that files and folders containing sensitive data or data not necessary for the purpose of a virtual machine using the virtual disk can be omitted from the virtual disk.

    Abstract translation: 系统和方法创建虚拟磁盘以供虚拟机访问。 可以从标记的文件夹创建虚拟磁盘,从而可以从虚拟磁盘中省略包含使用虚拟磁盘的虚拟机不需要的敏感数据或数据的文件和文件夹。

Patent Agency Ranking