IP Library Granted Patent US 7,565,695
Granted Patent B2
US 7,565,695 · App. 11/104,202 · Granted Jul 21, 2009

System and method for directly accessing data from a data storage medium

Assignee: Webroot Software, Inc.
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,565,695
App. No.
11/104,202
Granted
Jul 21, 2009
Kind
B2
Abstract

Systems and methods for scanning files for pestware on a protected computer are described. In one variation, locations of each of a plurality of files in a file storage device of the protected computer are identified while substantially circumventing an operating system of the protected computer. Information from each of the plurality of files is retrieved and analyzed so as to determine whether any of the plurality of files are potential pestware files. In variations, the operating system is circumvented while the information from each of the plurality of files is retrieved. In other variations, before information is retrieved from each of the plurality of files, a listing of the plurality of files is sorted according to the locations of the files on the storage device so as to reduce, even further, the time required to access the plurality of files.

Claims (38)

1. A method for scanning files on a protected computer for pestware, the method comprising:

identifying a location of each of at least a first file, a second file, and a third file on a file storage device of the protected computer;

sorting a listing of the first, second, and third files in accordance with their respective physical locations on the storage device to generate a sorted list;

retrieving, while circumventing an operating system of the protected computer, information from the first, second, and third files by directly and sequentially accessing the first, second, and third files in the order the first, second, and third files are listed in the sorted list;

analyzing the information from the first, second, and third files to determine whether or not each of the first, second, and third files is a potential pestware file; and

reporting results of the analyzing to a user.

2. The method of claim 1 , wherein the identifying includes identifying the location of each of at least the first file, the second file, and the third file while circumventing the operating system.

3. The method of claim 2 , wherein the identifying includes:

accessing a master file table of the file storage device while circumventing the operating system; and

identifying the location of each of at least the first file, the second file, and the third file by analyzing the data of the master file table.

4. The method of claim, 1 wherein the identifying includes utilizing the operating system to identify the first file, the second file, and the third file.

5. The method of claim 1 , wherein the identifying includes identifying a cluster number of each of the first file, the second file, and the third file on a disk drive of the protected computer.

6. A method for scanning files on a protected computer for pestware, the method comprising:

identifying, while circumventing an operating system of the protected computer, a location of each of a plurality of files on a file storage device of the protected computer;

sorting, by location on the file storage device, a listing of the plurality of files to generate a sorted list;

retrieving information from each of the plurality of files by directly and sequentially accessing each of the plurality of files in the order the plurality of files are listed in the sorted list;

analyzing the information from each of the plurality of files to determine whether any of the plurality of files are potential pestware files; and

reporting results of the analyzing to a user.

7. The method of claim 6 , wherein the identifying includes:

accessing a master file table of the file storage device while circumventing the operating system; and

identifying the location of each of the plurality of files by analyzing the data of the master file table.

8. The method of claim 6 , wherein the retrieving includes utilizing the operating system to retrieve information from each of the plurality of files.

9. The method of claim 6 , wherein the identifying includes identifying a cluster number of each of the plurality of files on a disk drive of the protected computer.

10. A system for managing pestware, the system comprising:

a processor; and

a memory including a plurality of program instructions, the plurality of program instructions including:

a pestware detection module configured to cause the processor to detect pestware on a file storage device of a protected computer; and

a sweep speedup module configured to cause the processor to:

identify, while circumventing an operating system of the protected computer, a location of each of a plurality of files on the file storage device;

sort, by location on the file storage device, a listing of the plurality of files to generate a sorted list; and

retrieve information from each of the plurality of files by directly and sequentially accessing each of the plurality of files in the order the plurality of files are listed in the sorted list;

wherein the pestware detection module is configured to analyze the information from each of the plurality of files to determine whether any of the plurality of files are potential pestware files and to report results of the analysis to a user.

11. The system of claim l 0 , wherein the sweep speedup module is configured to cause the processor to:

access, while circumventing the operating system, a master file table of the file storage device; and

identify the location of each of the plurality of files by analyzing the data of the master file table.

12. The system of claim l 0 , wherein the sweep speedup module is configured to cause the processor to utilize the operating system to retrieve information from each of the plurality of files.

13. The system of claim 10 , wherein the sweep speedup module is configured to cause the processor to identify a cluster number of each of the plurality of files on a disk drive of the protected computer.

14. The system of claim l 0 , wherein the protected computer includes a plurality of file storage devices, and wherein the plurality of files are distributed among the plurality of file storage devices.

Assignments (10)
ASSIGNMENT AND ASSUMPTION AGREEMENT Recorded Jul 6, 2023
From: CARBONITE, LLC
To: OPEN TEXT INC.
Reel/Frame 064351/0178 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 29, 2023
From: WEBROOT LLC
To: CARBONITE, LLC
Reel/Frame 064167/0129 →
CERTIFICATE OF CONVERSION Recorded Jun 29, 2023
From: WEBROOT INC.
To: WEBROOT LLC
Reel/Frame 064176/0622 →
RELEASE OF SECURITY INTEREST IN PATENT RIGHTS RECORDED AT R/F 048723/0612 Recorded Dec 26, 2019
From: BARCLAYS BANK PLC, AS COLLATERAL AGENT
To: WEBROOT INC.
Reel/Frame 051418/0714 →
SECURITY INTEREST Recorded Mar 28, 2019
From: WEBROOT INC.
To: BARCLAYS BANK PLC, AS COLLATERAL AGENT
Reel/Frame 048723/0612 →
RELEASE OF SECURITY INTEREST Recorded Mar 22, 2019
From: WELLS FARGO BANK, NATIONAL ASSOCIATION
To: WEBROOT INC.
Reel/Frame 050454/0102 →
SECURITY INTEREST Recorded Jan 6, 2015
From: WEBROOT INC.
To: WELLS FARGO BANK, NATIONAL ASSOCIATION
Reel/Frame 034742/0085 →
CHANGE OF NAME Recorded Sep 13, 2012
From: WEBROOT SOFTWARE, INC.
To: WEBROOT INC.
Reel/Frame 028953/0917 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 10, 2009
From: NICHOLS, TONY
To: WEBROOT SOFTWARE, INC.
Reel/Frame 022808/0389 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 12, 2005
From: BURTSCHER, MICHAEL
To: WEBROOT SOFTWARE, INC.
Reel/Frame 016471/0484 →
Continuity (1)
Related Publication 20060230291A1 · Oct 12, 2006