-
公开(公告)号:US20160127393A1
公开(公告)日:2016-05-05
申请号:US14745903
申请日:2015-06-22
Applicant: Ashar Aziz , Henry Uyeno , Jay Manni , Amin Sukhera , Stuart Staniford
Inventor: Ashar Aziz , Henry Uyeno , Jay Manni , Amin Sukhera , Stuart Staniford
CPC classification number: H04L63/1416 , G06F21/56 , G06F21/562 , H04L51/12 , H04L63/123 , H04L63/126 , H04L63/1425 , H04L63/145 , H04L63/168
Abstract: An electronic message is analyzed for malware contained in the message. Text of an electronic message may be analyzed to detect and process malware content in the electronic message itself. The present technology may analyze an electronic message and attachments to electronic messages to detect a uniform resource location (URL), identify whether the URL is suspicious, and analyze all suspicious URLs to determine if they are malware. The analysis may include re-playing the suspicious URL in a virtual environment which simulates the intended computing device to receive the electronic message. If the re-played URL is determined to be malicious, the malicious URL is added to a black list which is updated throughout the computer system.
Abstract translation: 分析消息中包含的恶意软件的电子消息。 可以分析电子消息的文本以检测和处理电子消息本身中的恶意软件内容。 本技术可以分析电子消息和电子消息的附件以检测统一的资源位置(URL),识别URL是否可疑,并分析所有可疑URL以确定它们是否是恶意软件。 分析可以包括在虚拟环境中重新播放可疑URL,虚拟环境模拟预期的计算设备以接收电子消息。 如果确定重播的URL是恶意的,恶意URL将添加到整个计算机系统中更新的黑名单中。
-
公开(公告)号:US09106694B2
公开(公告)日:2015-08-11
申请号:US13089191
申请日:2011-04-18
Applicant: Ashar Aziz , Henry Uyeno , Jay Manni , Muhammad Amin , Stuart Staniford
Inventor: Ashar Aziz , Henry Uyeno , Jay Manni , Muhammad Amin , Stuart Staniford
CPC classification number: H04L63/1416 , G06F21/56 , G06F21/562 , H04L51/12 , H04L63/123 , H04L63/126 , H04L63/1425 , H04L63/145 , H04L63/168
Abstract: An electronic message is analyzed for malware contained in the message. Text of an electronic message may be analyzed to detect and process malware content in the electronic message itself. The present technology may analyze an electronic message and attachments to electronic messages to detect a uniform resource location (URL), identify whether the URL is suspicious, and analyze all suspicious URLs to determine if they are malware. The analysis may include re-playing the suspicious URL in a virtual environment which simulates the intended computing device to receive the electronic message. If the re-played URL is determined to be malicious, the malicious URL is added to a black list which is updated throughout the computer system.
Abstract translation: 分析消息中包含的恶意软件的电子消息。 可以分析电子消息的文本以检测和处理电子消息本身中的恶意软件内容。 本技术可以分析电子消息和电子消息的附件以检测统一的资源位置(URL),识别URL是否可疑,并分析所有可疑URL以确定它们是否是恶意软件。 分析可以包括在虚拟环境中重新播放可疑URL,虚拟环境模拟预期的计算设备以接收电子消息。 如果确定重播的URL是恶意的,那么恶意URL被添加到整个计算机系统中更新的黑名单中。
-
公开(公告)号:US20110314546A1
公开(公告)日:2011-12-22
申请号:US13089191
申请日:2011-04-18
Applicant: Ashar Aziz , Henry Uyeno , Jay Manni , Amin Sukhera , Stuart Staniford
Inventor: Ashar Aziz , Henry Uyeno , Jay Manni , Amin Sukhera , Stuart Staniford
CPC classification number: H04L63/1416 , G06F21/56 , G06F21/562 , H04L51/12 , H04L63/123 , H04L63/126 , H04L63/1425 , H04L63/145 , H04L63/168
Abstract: An electronic message is analyzed for malware contained in the message. Text of an electronic message may be analyzed to detect and process malware content in the electronic message itself. The present technology may analyze an electronic message and attachments to electronic messages to detect a uniform resource location (URL), identify whether the URL is suspicious, and analyze all suspicious URLs to determine if they are malware. The analysis may include re-playing the suspicious URL in a virtual environment which simulates the intended computing device to receive the electronic message. If the re-played URL is determined to be malicious, the malicious URL is added to a black list which is updated throughout the computer system.
Abstract translation: 分析消息中包含的恶意软件的电子消息。 可以分析电子消息的文本以检测和处理电子消息本身中的恶意软件内容。 本技术可以分析电子消息和电子消息的附件以检测统一的资源位置(URL),识别URL是否可疑,并分析所有可疑URL以确定它们是否是恶意软件。 分析可以包括在虚拟环境中重新播放可疑URL,虚拟环境模拟预期的计算设备以接收电子消息。 如果确定重播的URL是恶意的,恶意URL将添加到整个计算机系统中更新的黑名单中。
-
-