Invention Grant
- Patent Title: Anti-ransomware systems and methods using a sinkhole at an electronic device
-
Application No.: US15903962Application Date: 2018-02-23
-
Publication No.: US10685116B2Publication Date: 2020-06-16
- Inventor: Ghanashyam Satpathy
- Applicant: McAfee, LLC
- Applicant Address: US CA Santa Clara
- Assignee: McAfee, LLC
- Current Assignee: McAfee, LLC
- Current Assignee Address: US CA Santa Clara
- Agency: Hanley, Flight and Zimmerman, LLC
- Main IPC: G06F21/56
- IPC: G06F21/56 ; H04L29/06 ; G06F21/62

Abstract:
Methods, apparatus, systems, and articles of manufacture to remediate ransomware are disclosed. An example malware scanner includes a sinkhole generator to generate a sinkhole directory. The example malware scanner includes a storage device adapted to store a computer file and the sinkhole directory, wherein the sinkhole directory recursively expands when the computer file performs a file listing of the sinkhole directory to occupy the computer file by extending a period of time taken to perform the file listing of the sinkhole directory. The example malware scanner includes an analyzer to monitor execution of the computer file while the computer file is performing the file listing of the sinkhole directory to attempt to identify an indicator of compromise associated with the computer file, the analyzer to classify the computer file as ransomware when the analyzer identifies the indicator of compromise. The example malware scanner includes a cleaner to remediate the ransomware.
Public/Granted literature
- US20190266327A1 ANTI-RANSOMWARE SYSTEMS AND METHODS USING A SINKHOLE AT AN ELECTRONIC DEVICE Public/Granted day:2019-08-29
Information query