Patent
System and method for virus checking software
Nikolay Mateev,Giuseppe Desoli +1 more
- 29 Nov 2001
260
TL;DR: The present disclosure relates to a system and method for virus checking program binaries as discussed by the authors, which pertains to intercepting program instructions, determining if associated instructions contain one or more sets of "signature" bytes identified with a known virus, and releasing the intercepted code to computer hardware only after determining that intercepted code is clear of a virus signature.
read more
Abstract: The present disclosure relates to a system and method for virus checking program binaries. In one arrangement, the system and method pertain to intercepting program instructions, determining if associated instructions contain one or more sets of “signature” bytes identified with a known virus, and releasing the intercepted code to computer hardware only after determining that the intercepted code is clear of a virus signature.
read more
Chat with Paper
AI Agents for this Paper
Find similar papers on Google Scholar, PubMed and Arxiv
Write a critical review of this paper
Analyze citations of this paper to find unaddressed research gaps
Citations
Patent
Hash-based systems and methods for detecting and preventing transmission of unwanted e-mail
Walter Clark Milliken,William Timothy Strayer,Stephen Douglas Milligan +2 more
- 09 Oct 2008
TL;DR: In this article, a system (120) detects transmission of potentially unwanted e-mail messages by generating hash values based on one or more portions of the e-mails and then determining whether the generated hash values match hash values associated with prior e-email messages.
300
Patent
Electronic message analysis for malware detection
Ashar Aziz,Henry Uyeno,Jay Manni,Amin Sukhera,Stuart Staniford +4 more
- 23 Feb 2012
TL;DR: In this paper, an electronic message is analyzed for malware contained in the message and the analysis may include replaying the suspicious URL in a virtual environment which simulates the intended computing device to receive the electronic message, if the replayed URL is determined to be malicious, the malicious URL is added to a black list which is updated throughout the computer system.
262
Patent
Method and system for reducing the rate of infection of a communications network by a software worm
Stuart Staniford,Clifford Kahn,Nicholas Weaver,Christopher Coit,Roel Jonkman +4 more
- 06 Dec 2002
TL;DR: In this paper, a worm screen software module observes the behavior of, and optionally inspects the electronic messages sent from, a particular computer system, network address, virtual machine, and/or cluster and edits the flow of traffic from the network address when a possibility of a worm infection achieves a certain level.
237
Patent
Malware Detection Using Code Analysis and Behavior Monitoring
Anil Francis Thomas,George C. Chicioreanu,Adrian M. Marinescu +2 more
- 04 Feb 2008
TL;DR: In this paper, an anti-malware engine performs static analysis on program code and monitors behavior of program code that is exhibited when the program code executes in a virtual and/or non-virtual environment.
221
Patent
Hash-based systems and methods for detecting and preventing transmission of polymorphic network worms and viruses
Walter Clark Milliken,William Timothy Strayer,Stephen Douglas Milligan,Luis Sanchez,Craig Partridge +4 more
- 18 Apr 2010
TL;DR: In this article, a system (200) detects transmission of potentially malicious packets and generates hash values based on variable-sized blocks of the packets, then compares the generated hash values to hash values associated with prior packets.
219
References
Patent
Automatic immune system for computers and computer networks
William C. Arnold,David M. Chess,Jeffrey O. Kephart,S.R. White +3 more
- 19 Jan 1993
TL;DR: In this article, the authors propose a method to detect undesirable software entities, such as a computer virus, worm, or Trojan Horse, in a data processing system by detecting anomalous behavior that may indicate the presence of an undesirable software entity.
585
Patent
Computer virus trap
John Schnurer,Timothy J. Klemmer +1 more
- 30 May 1995
TL;DR: In this article, a computer virus trapping device is described that detects and eliminates computer viruses before they can enter a computer system and wreck havoc on its files, peripherals, etc. The trapping device creates a virtual world that simulates the host computer system intended by the virus to infect.
330
Patent
Simulated computer system for monitoring of software performance
Kurt Natvig
- 25 Sep 2002
TL;DR: In this article, a system S is defined which is capable of simulating a virtual computer (virtual computer, VC) for the purpose of software performance monitoring, implemented as a set of software modules (SM) that can be exchanged to change the behavior of the VC.
296
Patent
Polymorphic virus detection module
Carey Nachenberg
- 05 Jan 1998
TL;DR: Polymorphic anti-virus modules (PAMs) as discussed by the authors include a CPU emulator for emulating the target program, a virus signature scanning module for scanning decrypted virus code, and an emulation control module.
268
Patent
Security enhancement for untrusted executable code
Barry Bond,Sudeep Bharati +1 more
- 25 Aug 1998
TL;DR: In this paper, the authors propose to replace traditional application-program interface (API) calls in untrusted code with translation-code modules (thunks) that allow the executable code to access the host operating system, while preventing breaches of the host system's security.
262