IP Library Granted Patent US 8,020,209
Granted Patent B2
US 8,020,209 · App. 11/143,006 · Granted Sep 13, 2011

System and method of monitoring and controlling application files

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,020,209
App. No.
11/143,006
Granted
Sep 13, 2011
Kind
B2
Abstract

A system and method for updating a system that controls files executed on a workstation. The workstation includes a workstation management module configured to detect the launch of an application. A workstation application server receives data associated with the application from the workstation. This data can include a hash value. The application server module can determine one or more categories to associate with the application by referencing an application inventory database or requesting the category from an application database factory. The application database factory can receive applications from multiple application server modules. The application database factory determines whether the application was previously categorized by the application database factory and provides the category to the application server module. Once the application server module has the category, it forwards a hash/policy table to the workstation management module. Upon receipt of the hash/policy table, the workstation management module applies the policy that is associated with the launched application to control access to the application on the workstation.

Claims (31)

1. A method of adapting a system over the Internet which protects computers from malicious software programs, the method comprising:

identifying a malicious software program stored on a first computer;

determining whether the malicious software program is identified in a first database, the first database including categorized programs;

if the malicious software program is identified in the first database, applying one or more policies associated with the malicious software program identified in the first database;

only if the malicious software program is not identified in the first database, adding an identifier indicative of the malicious software program to a second database;

uploading the second database including the identifier to a database factory over the Internet;

determining by the database factory, whether the malicious software program associated with the identifier has been previously analyzed by the database factory;

for each identifier that was not previously analyzed, associating the identifier with a respective digital fingerprint;

adding the respective digital fingerprint to a third database;

downloading the third database to a second computer; and

scanning the second computer for the malicious software program associated with the respective digital fingerprint in the third database.

2. The method of claim 1 , wherein the malicious software program is a spyware program.

3. The method of claim 1 , wherein the malicious software program is an anti-virus program.

4. The method of claim 1 , wherein the malicious software program is a hacking program.

5. The method of claim 1 , wherein the malicious software program is a remote access program.

6. The method of claim 1 , wherein if the scanning of the second computer determines that the malicious software program is stored on the second computer, then disallowing the malicious software program from running on the second computer.

7. The method of claim 1 , wherein if the scanning of the second computer determines that the malicious software program is stored on the second computer, then notifying a user of the second computer that the malicious software program is stored on the second computer.

8. The method of claim 1 further comprising:

classifying the malicious software program; and

downloading the classification to the second computer.

9. The method of claim 1 further comprising:

identifying a malicious software program stored on a third computer;

determining whether the malicious software program stored on the third computer is identified in a fourth database;

if the malicious software program stored on the third computer is identified in the fourth database, applying one or more policies associated with the malicious software program identified in the fourth database;

if the malicious software program stored on the third computer is not identified in the fourth database, adding an identifier indicative of the malicious software program stored on the third computer to a fifth database; and

uploading the fifth database including the identifier to the database factory over the Internet.

10. The method of claim 9 , wherein the malicious software program scanned for on the second computer is in the second and fifth databases.

11. The method of claim 9 wherein downloading the third database is based at least in part upon a request frequency that is associated with the number of times that the identifier associated with the malicious software program is in the second and fifth databases.

12. The method of claim 9 further comprising merging and sorting the identifiers in the second and fifth databases.

13. The method of claim 9 , wherein the identifiers in the second database are the same as the identifiers in the fifth database.

14. The method of claim 9 , wherein the second database is different than the fifth database.

Assignments (23)
RELEASE OF SECURITY INTEREST Recorded Apr 2, 2025
From: UBS AG, STAMFORD BRANCH
To: FORCEPOINT, LLC; BITGLASS, LLC
Reel/Frame 070706/0263 →
SECURITY INTEREST Recorded Apr 1, 2025
From: FORCEPOINT LLC; BITGLASS, LLC
To: SOCIÉTÉ GÉNÉRALE
Reel/Frame 070703/0887 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 18, 2021
From: FORCEPOINT FEDERAL HOLDINGS LLC
To: FORCEPOINT LLC
Reel/Frame 056272/0475 →
CHANGE OF NAME Recorded May 10, 2021
From: FORCEPOINT LLC
To: FORCEPOINT FEDERAL HOLDINGS LLC
Reel/Frame 056183/0265 →
PATENT SECURITY AGREEMENT Recorded Jan 20, 2021
From: REDOWL ANALYTICS, INC.; FORCEPOINT LLC
To: CREDIT SUISSE AG, CAYMAN ISLANDS BRANCH, AS COLLATERAL AGENT
Reel/Frame 055052/0302 →
RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jan 8, 2021
From: RAYTHEON COMPANY
To: FORCEPOINT LLC
Reel/Frame 055452/0207 →
RELEASE OF SECURITY INTEREST IN PATENTS Recorded Jan 8, 2021
From: RAYTHEON COMPANY
To: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, LLC (FKA PORTAUTHORITY TECHNOLOGIES, INC.); RAYTHEON OAKLEY SYSTEMS, LLC; FORCEPOINT FEDERAL LLC (FKA RAYTHEON CYBER PRODUCTS, LLC, FKA RAYTHEON CYBER PRODUCTS, INC.)
Reel/Frame 055492/0146 →
PATENT SECURITY AGREEMENT SUPPLEMENT Recorded Feb 27, 2020
From: FORCEPOINT LLC
To: RAYTHEON COMPANY
Reel/Frame 052045/0482 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 1, 2017
From: WEBSENSE, LLC
To: FORCEPOINT LLC
Reel/Frame 043397/0440 →
CORRECTIVE ASSIGNMENT TO CORRECT THE ASSIGNEE FROM WEBSENSE LLC TO WEBSENSE, LLC PREVIOUSLY RECORDED ON REEL 039590 FRAME 0646. ASSIGNOR(S) HEREBY CONFIRMS THE CHANGE OF NAME. Recorded Sep 8, 2016
From: WEBSENSE, INC.
To: WEBSENSE, LLC
Reel/Frame 039951/0904 →
CHANGE OF NAME Recorded Aug 5, 2016
From: WEBSENSE, INC.
To: WEBSENSE LLC
Reel/Frame 039590/0646 →
PATENT SECURITY AGREEMENT Recorded Jun 9, 2015
From: WEBSENSE, INC.; RAYTHEON OAKLEY SYSTEMS, LLC; RAYTHEON CYBER PRODUCTS, LLC (FORMERLY KNOWN AS RAYTHEON CYBER PRODUCTS, INC.); PORT AUTHORITY TECHNOLOGIES, INC.
To: RAYTHEON COMPANY
Reel/Frame 035859/0282 →
RELEASE OF SECOND LIEN SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME: 30704/0374 Recorded May 29, 2015
From: ROYAL BANK OF CANADA, AS COLLATERAL AGENT
To: WEBSENSE, INC.; PORT AUTHORITY TECHNOLOGIES, INC.
Reel/Frame 035801/0689 →
RELEASE OF FIRST LIEN SECURITY INTEREST IN PATENTS PREVIOUSLY RECORDED AT REEL/FRAME: 030694/0615 Recorded May 29, 2015
From: ROYAL BANK OF CANADA, AS COLLATERAL AGENT
To: WEBSENSE, INC.; PORT AUTHORITY TECHNOLOGIES, INC.
Reel/Frame 035858/0680 →
ASSIGNMENT OF SECURITY INTEREST Recorded Apr 10, 2014
From: JPMORGAN CHASE BANK, N.A., AS EXISTING COLLATERAL AGENT
To: ROYAL BANK OF CANADA, AS SUCCESSOR COLLATERAL AGENT
Reel/Frame 032716/0916 →
SECOND LIEN SECURITY AGREEMENT Recorded Jun 27, 2013
From: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, INC.
To: ROYAL BANK OF CANADA
Reel/Frame 030704/0374 →
FIRST LIEN SECURITY AGREEMENT Recorded Jun 26, 2013
From: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 030694/0615 →
RELEASE OF SECURITY INTEREST Recorded Jun 26, 2013
From: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
To: WEBSENSE, INC.
Reel/Frame 030693/0424 →
NOTICE OF GRANT OF SECURITY INTEREST IN PATENTS Recorded Dec 16, 2010
From: WEBSENSE, INC.
To: BANK OF AMERICA, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 025503/0895 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 7, 2010
From: KESTER, HAROLD M.; HEGLI, RONALD B.; DIMM, JOHN ROSS; ANDERSON, MARK RICHARD
To: WEBSENSE, INC.
Reel/Frame 025641/0120 →
TERMINATION OF SECURITY INTEREST IN PATENTS Recorded Nov 19, 2010
From: BANK OF AMERICA, N.A., AS SENIOR COLLATERAL AGENT
To: PORTAUTHORITY TECHNOLOGIES, INC.; WEBSENSE, INC.
Reel/Frame 025408/0520 →
ASSIGNMENT OF SECURITY INTEREST Recorded Jul 3, 2008
From: MORGAN STANLEY & CO. INCORPORATED, IN ITS CAPACITY AS RESIGNING SENIOR COLLATERAL AGENT
To: BANK OF AMERICA, N.A., IN ITS CAPACITY AS SUCCESSOR SENIOR COLLATERAL AGENT
Reel/Frame 021185/0802 →
SENIOR PATENT SECURITY AGREEMENT Recorded Oct 19, 2007
From: WEBSENSE, INC.; PORTAUTHORITY TECHNOLOGIES, INC.
To: MORGAN STANLEY & CO. INCORPORATED, AS SENIOR COLLATERAL AGENT
Reel/Frame 019984/0416 →