Invention Grant
- Patent Title: System and method for strategic anti-malware monitoring
-
Application No.: US16200797Application Date: 2018-11-27
-
Publication No.: US10581899B2Publication Date: 2020-03-03
- Inventor: Marcus J. Ranum , Ron Gula
- Applicant: Tenable, Inc.
- Applicant Address: US MD Columbia
- Assignee: Tenable, Inc.
- Current Assignee: Tenable, Inc.
- Current Assignee Address: US MD Columbia
- Agency: Muncy, Geissler, Olds & Lowe, P.C.
- Agent Daniel Podhajny
- Main IPC: G06F21/56
- IPC: G06F21/56 ; H04L29/06 ; G06F16/903 ; H04L29/12 ; H04L29/08

Abstract:
The system and method described herein may leverage active network scanning and passive network monitoring to provide strategic anti-malware monitoring in a network. In particular, the system and method described herein may remotely connect to managed hosts in a network to compute hashes or other signatures associated with processes running thereon and suspicious files hosted thereon, wherein the hashes may communicated to a cloud database that aggregates all known virus or malware signatures that various anti-virus vendors have catalogued to detect malware infections without requiring the hosts to have a local or resident anti-virus agent. Furthermore, running processes and file system activity may be monitored in the network to further detect malware infections. Additionally, the network scanning and network monitoring may be used to detect hosts that may potentially be participating in an active botnet or hosting botnet content and audit anti-virus strategies deployed in the network.
Public/Granted literature
- US20190089718A1 SYSTEM AND METHOD FOR STRATEGIC ANTI-MALWARE MONITORING Public/Granted day:2019-03-21
Information query