会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • HASH-BASED SYSTEMS AND METHODS FOR DETECTING, PREVENTING, AND TRACING NETWORK WORMS AND VIRUSES
    • 基于HASH的系统和检测,预防和跟踪网络和病毒的方法
    • US20100205672A1
    • 2010-08-12
    • US12762365
    • 2010-04-18
    • Walter Clark MillikenWilliam Timothy StrayerStephen Douglas MilliganLuis SanchezCraig Partridge
    • Walter Clark MillikenWilliam Timothy StrayerStephen Douglas MilliganLuis SanchezCraig Partridge
    • G06F21/00
    • H04L63/145G06F21/562H04L51/12
    • A system (126-129) detects transmission of potentially malicious packets. The system (126-129) receives packets and generates hash values corresponding to each of the packets. The system (126-129) may then compare the generated hash values to hash values corresponding to prior packets. The system (126-129) determines that one of the packets is a potentially malicious packet when the generated hash value corresponding to the one packet matches one of the hash values corresponding to one of the prior packets and the one prior packet was received within a predetermined amount of time of the one packet. The system (126-129) may also facilitate the tracing of the path taken by a potentially malicious packet. In this case, the system (126-129) may receive a message that identifies a potentially malicious packet, generate hash values from the potentially malicious packet, and determine whether one or more of the generated hash values match hash values corresponding to previously-received packets. The system (126-129) may then identify the potentially malicious packet as one of the previously-received packets when one or more of the generated hash values match the hash value corresponding to the one previously-received packet.
    • 系统(126-129)检测潜在恶意数据包的传输。 系统(126-129)接收分组并产生与每个分组对应的散列值。 然后,系统(126-129)可以将生成的散列值与对应于先前分组的散列值进行比较。 当对应于一个分组的生成的散列值与对应于先前分组之一的哈希值中的一个匹配,并且在一个分组内接收到一个先前分组时,系统(126-129)确定分组中的一个是潜在的恶意分组 一个分组的预定时间量。 系统(126-129)还可以便利跟踪潜在的恶意数据包所采取的路径。 在这种情况下,系统(126-129)可以接收标识潜在恶意数据包的消息,从潜在的恶意数据包生成散列值,并确定所生成的散列值中的一个或多个是否与先前接收到的散列值相匹配 数据包 然后当一个或多个所生成的散列值与对应于先前接收的一个分组的散列值相匹配时,系统(126-129)可以将潜在的恶意分组识别为先前接收的分组之一。
    • 4. 发明申请
    • HASH-BASED SYSTEMS AND METHODS FOR DETECTING, PREVENTING, AND TRACING NETWORK WORMS AND VIRUSES
    • 基于HASH的系统和检测,预防和跟踪网络和病毒的方法
    • US20090158435A1
    • 2009-06-18
    • US12249803
    • 2008-10-10
    • Walter Clark MillikenWilliam Timothy StrayerStephen Douglas MilliganLuis SanchezCraig Partridge
    • Walter Clark MillikenWilliam Timothy StrayerStephen Douglas MilliganLuis SanchezCraig Partridge
    • G06F21/00
    • H04L63/145G06F21/562H04L51/12
    • A system (126-129) detects transmission of potentially malicious packets. The system (126-129) receives packets and generates hash values corresponding to each of the packets. The system (126-129) may then compare the generated hash values to hash values corresponding to prior packets. The system (126-129) determines that one of the packets is a potentially malicious packet when the generated hash value corresponding to the one packet matches one of the hash values corresponding to one of the prior packets and the one prior packet was received within a predetermined amount of time of the one packet. The system (126-129) may also facilitate the tracing of the path taken by a potentially malicious packet. In this case, the system (126-129) may receive a message that identifies a potentially malicious packet, generate hash values from the potentially malicious packet, and determine whether one or more of the generated hash values match hash values corresponding to previously-received packets. The system (126-129) may then identify the potentially malicious packet as one of the previously-received packets when one or more of the generated hash values match the hash value corresponding to the one previously-received packet.
    • 系统(126-129)检测潜在恶意数据包的传输。 系统(126-129)接收分组并产生与每个分组对应的散列值。 然后,系统(126-129)可以将生成的散列值与对应于先前分组的散列值进行比较。 当对应于一个分组的生成的散列值与对应于先前分组之一的哈希值中的一个匹配,并且在一个分组内接收到一个先前分组时,系统(126-129)确定分组中的一个是潜在的恶意分组 一个分组的预定时间量。 系统(126-129)还可以便利跟踪潜在的恶意数据包所采取的路径。 在这种情况下,系统(126-129)可以接收标识潜在恶意数据包的消息,从潜在的恶意数据包生成散列值,并确定所生成的散列值中的一个或多个是否与先前接收到的散列值相匹配 数据包 然后当一个或多个所生成的散列值与对应于先前接收的一个分组的散列值相匹配时,系统(126-129)可以将潜在的恶意分组识别为先前接收的分组之一。