IP Library Granted Patent US 7,823,205
Granted Patent B1
US 7,823,205 · App. 11/427,617 · Granted Oct 26, 2010

Conserving computing resources while providing security

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 7,823,205
App. No.
11/427,617
Granted
Oct 26, 2010
Kind
B1
Abstract

A computer has protected resources presenting threat vectors that malicious software can use to attack the computer. A security module has monitoring components that monitor the protected resources to detect malicious software. The security module detects if a protected resource enters a steady security state. In response to a protected resource entering a steady state, the security module selectively disables the components that monitor the protected resource, thereby conserving the computing resources utilized by the security module and freeing the computing resources for other tasks. If the resource exits the steady security state, the security module temporarily blocks access to the resource while it enables the monitoring components for that resource.

Claims (36)

1. A computer program product having a non-transitory computer-readable medium having computer program code tangibly embodied therein for providing security to a computer, comprising:

a protection module having monitoring components for monitoring protected resources of the computer for security threats, the protected resources comprising a storage device and the monitoring components comprising a file scanning component for scanning files on the storage device for malicious software;

a state monitoring module for determining whether protected resources of the computer are in steady security states, wherein a protected resource is in a steady security state if it does not present a threat vector and there are no other threat vectors in the computer through which malicious software can infect the resource; and

a computing resource conservation module for selectively disabling ones of the monitoring components responsive to a protected resource being in a steady security state, wherein the file scanning component is disabled responsive to a determination that the storage device is in a steady security state.

2. The computer program product of claim 1 , wherein the conservation module waits a specified time period after a protected resource enters a steady security state before disabling a monitoring component.

3. The computer program product of claim 1 , wherein the conservation module disables network monitoring components responsive to a network connection of the computer being in a steady security state.

4. The computer program product of claim 1 , further comprising:

an access blocking module for temporarily blocking access to a protected resource exiting a steady security state.

5. The computer program product of claim 1 , further comprising:

an access blocking module for creating a steady security state for a protected resource by blocking access to the protected resource.

6. The computer program product of claim 5 , wherein the access blocking module creates a steady security state by blocking access to the protected resource responsive to a determination that the computer is in an idle state.

7. The computer program product of claim 1 , wherein a monitoring component is disabled and wherein the conservation module further selectively enables the monitoring component responsive to a protected resource exiting a steady security state.

8. A system for providing security to a computer, comprising:

a non-transitory computer-readable medium having computer program code tangibly embodied therein, the computer program code comprising:

a protection module having monitoring components for monitoring protected resources of the computer for security threats, the protected resources comprising a storage device and the monitoring components comprising a file scanning component for scanning files on the storage device for malicious software;

a state monitoring module for determining whether protected resources of the computer are in steady security states, wherein a protected resource is in a steady security state if it does not present a threat vector and there are no other threat vectors in the computer through which malicious software can infect the resource; and

a computing resource conservation module for selectively disabling ones of the monitoring components responsive to a protected resource being in a steady security state, wherein the file scanning component is disabled responsive to a determination that the storage device is in a steady security state; and

a computer processor for executing the computer program code.

9. The system of claim 8 , wherein the conservation module waits a specified time period after a protected resource enters a steady security state before disabling a monitoring component.

10. The system of claim 8 , the computer program code further comprising:

an access blocking module for temporarily blocking access to a protected resource exiting a steady security state.

11. The system of claim 8 , the computer program code further comprising:

an access blocking module for creating a steady security state for a protected resource by blocking access to the protected resource.

12. The system of claim 8 , wherein a monitoring component is disabled and wherein the conservation module further selectively enables the monitoring component responsive to a protected resource exiting a steady security state.

13. A method for providing security to a computer, comprising:

using a computer to perform steps comprising:

monitoring protected resources of the computer for security threats using monitoring components, the protected resources comprising a storage device and the monitoring components comprising a file scanning component for scanning files on the storage device for malicious software;

determining whether protected resources of the computer are in steady security states, wherein a protected resource is in a steady security state if it does not present a threat vector and there are no other threat vectors in the computer through which malicious software can infect the resource; and

selectively disabling ones of the monitoring components responsive to a determination that a protected resource is in a steady security state, wherein the file scanning component is disabled responsive to a determination that the storage device is in a steady security state.

14. The method of claim 13 , further comprising:

creating a steady security state for a protected resource by blocking access to the protected resource.

15. The method of claim 13 , wherein a monitoring component is disabled, further comprising:

selectively enabling the monitoring component responsive to a protected resource exiting a steady security state.

16. The method of claim 13 , wherein the storage device is determined to be in a steady security state if it does not contain malicious software and there are no threat vectors through which the storage device can be attacked by malicious software.

17. The method of claim 13 , wherein a subset of the monitoring components are disabled responsive to the determination that the protected resource is in a steady security state, and wherein the disabling frees computing resources for other processes executing on the computer.

18. The method of claim 13 , wherein ones of the monitoring components are disabled at staggered periods of time after a protected resource enters a steady security state.

Assignments (5)
NOTICE OF SUCCESSION OF AGENCY (REEL 050926 / FRAME 0560) Recorded Sep 13, 2022
From: JPMORGAN CHASE BANK, N.A.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 061422/0371 →
SECURITY AGREEMENT Recorded Sep 13, 2022
From: NORTONLIFELOCK INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062220/0001 →
CHANGE OF NAME Recorded Jun 18, 2020
From: SYMANTEC CORPORATION
To: NORTONLIFELOCK INC.
Reel/Frame 053306/0878 →
SECURITY AGREEMENT Recorded Nov 4, 2019
From: SYMANTEC CORPORATION; BLUE COAT LLC; LIFELOCK, INC,; SYMANTEC OPERATING CORPORATION
To: JPMORGAN, N.A.
Reel/Frame 050926/0560 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jun 29, 2006
From: ISENBERG, HENRI J.
To: SYMANTEC CORPORATION
Reel/Frame 017867/0592 →