Invention Grant
- Patent Title: Detecting machines compromised with malware
- Patent Title (中): 检测机器受到恶意软件的攻击
-
Application No.: US12177355Application Date: 2008-07-22
-
Publication No.: US08464341B2Publication Date: 2013-06-11
- Inventor: Rami Cohen
- Applicant: Rami Cohen
- Applicant Address: US WA Redmond
- Assignee: Microsoft Corporation
- Current Assignee: Microsoft Corporation
- Current Assignee Address: US WA Redmond
- Agency: Workman Nydegger
- Main IPC: G06F11/00
- IPC: G06F11/00

Abstract:
A computer system can be configured to identify when it has been infected with or otherwise compromised by malware, such as viruses, worms, etc. In one implementation, a computer system receives and installs one or more decoy contacts in a contact store and further installs one or more malware reporting modules that effectively filter outgoing messages. For example, a malware reporting module can redirect messages with a decoy contact address to an alternate inbox associated with the decoy contact. The same malware reporting module, or another module in the system, can also generate one or more reports indicating the presence of malware, either due to detection of the decoy contact address, or due to identifying messages in the decoy contact inbox. The host computer system that sent the message to the decoy contact can then be flagged as infected with malware.
Public/Granted literature
- US20100024034A1 DETECTING MACHINES COMPROMISED WITH MALWARE Public/Granted day:2010-01-28
Information query