IL164609A0

Detecting and countering malicious code in enterprise networks

Abstract

A system and method for detecting and countering malicious code in an enterprise network are provided. A pattern recognition processor monitors local operations on a plurality of local machines connected through an enterprise network, to detect irregular local behavior patterns. An alert may be generated after an irregularity in behavior pattern on a local machine is detected. Irregular behavior alerts from a plurality of local machines are analyzed. If similar alerts are received from at least a threshold number of local machines over a corresponding period of time, one or more countermeasure operations are selected based on the analysis of the irregular behavior alerts. The selected countermeasure operations are communicated to the local machines and performed by the local machines.

Term

No projected expiry on record.

  1. Priority
  2. Filed
  3. Published
  4. Today

16 members in 12 offices

This recordMember, by publication datePriority claim2 more offices are in the list below

Priority claims2

Priority claims
DocumentOfficeKindDate
37313502United States of AmericaP
0311824United States of AmericaW

Members16

Family members, oldest first
DocumentOfficeKind
US2003200464A1United States of AmericaA1
CA2480475A1CanadaA1
WO03090426A1World Intellectual Property Organization (WIPO)A1
AU2003223656A1AustraliaA1
KR20040101490ARepublic of KoreaA
EP1495616A1European Patent Office (EPO)A1
BR0309288ABrazilA
CN1647483AChinaA
JP2005523539AJapanA
IL164609A0This recordIsraelA0
IL164609D0IsraelD0
EP1495616B1European Patent Office (EPO)B1
AT467297TAustriaT
ATE467297T1AustriaT1
DE60332448D1GermanyD1
US7934103B2United States of AmericaB2