IP Library Granted Patent US 7,778,999
Granted Patent B1
US 7,778,999 · App. 10/766,563 · Granted Aug 17, 2010

Systems and methods for multi-layered packet filtering and remote management of network devices

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,778,999
App. No.
10/766,563
Granted
Aug 17, 2010
Kind
B1
Abstract

A method for allowing individuals and groups of individuals to establish accountability relationships which are useful for generating shared commitments to avoid undesirable digital materials is disclosed. A application is loaded on a client which accesses a blacklist database of inappropriate words. The blacklist database associates a rating for each inappropriate word in the database. As a monitored user accesses digital content, a capture module captures the digital content in real time. All textual components of the digital content is examined and an overall appropriateness rating for each individual piece of digital content is developed. Via an access server, the data is recorded and reported and a monitoring user may a report on the data accessed by the monitored user.

Claims (82)

1. A method comprising:

for each electronic device of a plurality of electronic devices, in real time:

receiving, in a backend system, information related to digital data captured by the electronic device at a transport layer before the digital data is provided to an application layer for presentation to a user of the electronic device, the backend system comprising at least one server;

on the at least one server, determining a digital-data rating via the information related to the captured digital data, the determining comprising:

checking a ratings database for a pre-existing rating for the captured digital data using a network address included in the information related to the captured digital data;

responsive to the network address being found in the ratings database, using the pre-existing rating as the digital-data rating;

responsive to the captured digital data not being found in the ratings database:

crawling the captured digital data via the network address;

accessing the captured digital data over a network;

performing a word-by-word analysis of the captured digital data to determine the digital-data rating; and

updating the ratings database with the network address and the digital-data rating responsive to the performance of the word-by-word analysis;

designating the captured digital data as illicit digital data or non-illicit digital data, the designating comprising designating the captured digital data as illicit digital data if the digital-data rating exceeds a predetermined threshold; and

transmitting a result of the designating from the at least one server to the electronic device to block the illicit digital data from delivery to the application layer.

2. The method of claim 1 , comprising, for each of the plurality of electronic devices, in real time, allowing delivery of the non-illicit digital data to the application layer for presentation to the user of the electronic device.

3. The method of claim 1 , comprising, for each of the plurality of electronic devices, in real time, capturing all requests for digital data over the network by the electronic device.

4. The method of claim 3 , comprising: for each of the plurality of electronic devices, concurrently routing:

information relating to at least some of the captured requests for digital data to the at least one server providing the content-rating service; and

the at least some captured requests to intended destinations on the network.

5. The method of claim 4 , wherein at least some of the captured digital data is digital data received at the electronic device as a result of the step of routing the information relating to at least some of the captured requests for digital data to the intended destinations.

6. The method of claim 4 , wherein at least some of the captured digital data is digital data received at the electronic device independent of the routing step.

7. The method of claim 4 , comprising, on the at least one server:

crawling requested digital data on the network using the at least some of the captured requests; and

rating the requested digital data for illicitness using a word-by-word analysis of the requested digital data.

8. The method of claim 7 , further comprising, responsive to the rating step, storing a rating and identification information for the rated digital data together in a content database in communication with the at least one server.

9. The method of claim 7 , further comprising transmitting configuration settings to the electronic device corresponding to the valid user account.

10. The method of claim 3 , comprising, for at least one of the plurality of electronic devices:

transmitting an indication from the backend system that at least one of the captured requests for digital data represents an unauthorized intrusion on the electronic device; and

denying the at least one of the captured requests for digital data.

11. The method of claim 1 , comprising, for each of the plurality of electronic devices, sending an authentication signal to the backend system, the authentication signal providing validation information indicating whether the electronic device corresponds to a valid user account.

12. The method of claim 1 , further comprising, for each of the plurality of electronic devices, filtering communication between the electronic device and the network for personal information.

13. The method of claim 1 , further comprising, for each of the plurality of electronic devices, filtering communication between the electronic device and the network for explicit requests for illicit content.

14. The method of claim 1 , wherein the electronic device comprises at least one of:

a personal computer;

a set-top box;

a router; and

a gateway.

15. The method of claim 1 , wherein at least some of the captured digital data comprises an instant message en route to an instant messaging application on the electronic device.

16. The method of claim 1 , wherein at least some of the captured digital data comprises an email message en route to an email application on the electronic device.

17. The method of claim 1 , further comprising, for at least one of the electronic devices, rating the captured digital data for illicitness utilizing a content-rating module on the electronic device.

18. The method of claim 1 , comprising, for at least one of the plurality of electronic devices:

transmitting information related to the captured digital data to a reporting server; and

on the reporting server, logging network activities of the user of the electronic device via the information related to the captured digital data.

19. The method of claim 18 , comprising: on the reporting server, for the at least one of the plurality of electronic devices:

generating a report summarizing illicitness of network activities of the user of the electronic device for a predetermined time period; and

transmitting the report over the network to a third party.

20. The method of claim 18 , comprising:

wherein the at least one of the plurality of electronic devices comprises more than one electronic device;

generating a multi-user report summarizing illicitness of network activities of each user of the more than one electronic device for a predetermined time period; and

transmitting the multi-user report over the network to a third party.

21. The method of claim 1 , comprising, for at least one of the plurality of electronic devices:

transmitting an indication from the backend system to the at least one of the plurality of electronic devices on whether the captured digital data is malicious or non-malicious; and

blocking the captured digital data deemed to be malicious.

22. A method comprising:

for each electronic device of a plurality of electronic devices, in real time:

on the electronic device, at a transport layer, capturing all digital data received by the electronic device over a network before the digital data is provided to an application layer for presentation to a user of the electronic device;

routing information related to the digital data to a backend system on the network, the backend system comprising at least one server, the at least one server providing a content-rating service for rating digital-data illicitness;

delaying delivery of the digital data to the application layer on the electronic device at least until the digital data is designated non-illicit by the at least one server;

on the at least one server, determining a digital-data rating via the information related to the digital data, the determining comprising:

checking a ratings database for a pre-existing rating for the digital data using a network address included in the information related to the digital data;

responsive to the network address being found in the ratings database, using the pre-existing rating as the digital-data rating;

responsive to the digital data not being found in the ratings database:

crawling the digital data via the network address;

accessing the digital data over the network;

performing a word-by-word analysis of the digital data to determine the digital-data rating; and

updating the ratings database with the network address and the digital-data rating responsive to the performance of the word-by-word analysis;

designating the digital data as illicit digital data or non-illicit digital data, the designating comprising designating the digital data as illicit digital data if the digital-data rating exceeds a predetermined threshold;

on the electronic device, receiving a result of the designating from the at least one server; and

on the electronic device, blocking the illicit digital data from delivery to the application layer.

23. An article of manufacture, the article of manufacture comprising:

at least one computer-readable medium;

processor instructions contained on the at least one computer readable medium, the processor instructions configured to be readable from the at least one computer-readable medium by at least one processor and thereby cause the at least one processor to operate as to, for each of a plurality of electronic devices, in real time:

receive, in a backend system, information related to digital data captured by the electronic device at a transport layer before the digital data is provided to an application layer for presentation to a user of the electronic device, the backend system comprising at least one server;

on the at least one server, determine a digital-data rating via the information related to the digital data, the determining comprising:

check a ratings database for a pre-existing rating for the digital data using a network address included in the information related to the digital data;

responsive to the network address being found in the ratings database, use the pre-existing rating as the digital-data rating;

responsive to the digital data not being found in the ratings database:

crawl the digital data via the network address;

access the digital data over a network;

perform a word-by-word analysis of the digital data to determine the digital-data rating; and

update the ratings database with the network address and the digital-data rating responsive to the performance of the word-by-word analysis;

designate the digital data as illicit digital data or non-illicit digital data, the designating comprising designating the digital data as illicit digital data if the digital-data rating exceeds a predetermined threshold; and

transmit the designation from the at least one server to the electronic device so that the electronic device may block the illicit digital data from delivery to the application layer.

Assignments (21)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 30, 2025
From: GEN DIGITAL AMERICAS S.R.O.
To: GEN DIGITAL INC.
Reel/Frame 071771/0767 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 30, 2025
From: AVAST SOFTWARE S.R.O.
To: GEN DIGITAL AMERICAS S.R.O.
Reel/Frame 071777/0341 →
RELEASE OF SECURITY INTEREST Recorded Mar 26, 2021
From: CREDIT SUISSE INTERNATIONAL, AS COLLATERAL AGENT
To: AVAST SOFTWARE, S.R.O.; AVAST SOFTWARE B.V.
Reel/Frame 055726/0407 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 23, 2018
From: AVAST SOFTWARE B.V.
To: AVAST SOFTWARE S.R.O.
Reel/Frame 046876/0165 →
MERGER Recorded Oct 11, 2017
From: AVG NETHERLANDS B.V.
To: AVG TECHNOLOGIES HOLDINGS B.V.
Reel/Frame 043841/0615 →
MERGER Recorded Oct 11, 2017
From: AVG TECHNOLOGIES HOLDINGS B.V.
To: AVG TECHNOLOGIES B.V.
Reel/Frame 043841/0844 →
MERGER Recorded Oct 11, 2017
From: AVG TECHNOLOGIES B.V.
To: AVAST SOFTWARE B.V.
Reel/Frame 043841/0899 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 15, 2017
From: AVG NETHERLANDS B.V.
To: AVAST SOFTWARE B.V.
Reel/Frame 043603/0008 →
SECURITY INTEREST Recorded Jan 27, 2017
From: AVG NETHERLANDS B.V.
To: CREDIT SUISSE INTERNATIONAL, AS COLLATERAL AGENT
Reel/Frame 041111/0914 →
RELEASE OF SECURITY INTEREST Recorded Oct 3, 2016
From: HSBC BANK USA, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
To: LOCATION LABS, INC.; AVG NETHERLANDS B.V.
Reel/Frame 040205/0406 →
SECURITY INTEREST Recorded Oct 16, 2014
From: AVG NETHERLANDS B.V.; LOCATION LABS, INC.
To: HSBC BANK USA, N.A.
Reel/Frame 034012/0721 →
CHANGE OF NAME Recorded Aug 2, 2013
From: AVG TECHNOLOGIES CY LIMITED
To: AVG NETHERLANDS B.V.
Reel/Frame 030929/0720 →
NUNC PRO TUNC ASSIGNMENT Recorded Jan 12, 2012
From: COTTER FAMILY FOUNDATION
To: EPIC SECURE SOLUTIONS, INC.
Reel/Frame 027522/0802 →
NUNC PRO TUNC ASSIGNMENT Recorded Jan 12, 2012
From: EPIC TECHNOLOGIES, INC
To: BESECURE TECHNOLOGIES, INC.
Reel/Frame 027522/0910 →
RELEASE OF SECURITY INTEREST Recorded Jan 12, 2012
From: GREGORY, JOSEPH R.
To: BESECURE TECHNOLOGIES, INC.
Reel/Frame 027522/0944 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 12, 2012
From: BESECURE TECHNOLOGIES, INC.
To: AVG TECHNOLOGIES CY LIMITED
Reel/Frame 027522/0981 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 5, 2006
From: BSAFE ONLINE, INC.
To: BSECURE TECHNOLOGIES, INC
Reel/Frame 018228/0830 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 9, 2006
From: BOISJOLIE, DARREN RONALD; HAADSMA, DAVID K.; BALASUBRAMANIAM, GANDHI; COTTER, ROBERT
To: BSAFE ONLINE, INC.
Reel/Frame 018085/0064 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 8, 2006
From: COTTER FAMILY FOUNDATION
To: BSAFE ONLINE, INC.
Reel/Frame 018084/0704 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 25, 2006
From: BERKEMEYER, VAN A., JR.; COTTER, AMY L.; COTTER, ROBERT B.; COVINGTON, GARY S.; MAJORAN, RAYMOND
To: COTTER FAMILY FOUNDATION
Reel/Frame 018001/0525 →
SECURITY AGREEMENT Recorded May 23, 2006
From: BESECURE TECHNOLOGIES, INC.
To: GREGORY, JOSEPH R.
Reel/Frame 017656/0332 →