IP Library Granted Patent US 8,655,959
Granted Patent B2
US 8,655,959 · App. 11/968,983 · Granted Feb 18, 2014

System, method, and computer program product for providing a rating of an electronic message

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,655,959
App. No.
11/968,983
Granted
Feb 18, 2014
Kind
B2
Abstract

A system, method, and computer program product are included for providing a rating of an electronic message to a recipient. In use, an electronic message intended for a recipient is rated. Additionally, the rating and die electronic message are provided to the recipient.

Claims (41)

1. A method, comprising:

receiving an electronic message intended for a recipient;

processing the electronic message;

determining a fingerprint for one or more portions of the electronic message;

comparing the fingerprint with a plurality of predetermined fingerprints that are stored in a database and that are associated with known unwanted data, known unsolicited data, a plurality of uniform resource locators (URLs), and a plurality of known harmful macro-instructions to be executed on a computer, wherein each of the plurality of predetermined fingerprints is assigned a predetermined rating within a predetermined scale indicative of a severity of risk of accessing electronic message content,

wherein the severity of risk indicated by the predetermined rating assigned to each of the plurality of predetermined fingerprints is based upon whether the predetermined fingerprint is associated with known unwanted data, known unsolicited data, a URL, or a known harmful macro-instruction; and

providing a rating for the electronic message if the fingerprint matches at least one of the plurality of predetermined fingerprints, the rating being based upon the predetermined rating assigned to the matching at least one predetermined fingerprint, wherein the rating is provided in conjunction with an icon that indicates whether the electronic message includes the unwanted data, and wherein a different icon is provided to indicate a presence of non-malicious data in the electronic message;

wherein the processing of the electronic message is performed in a virtual environment that includes utilizing a virtual machine, opening an attachment of the electronic message in the virtual environment, identifying results of the opening of the attachment within the virtual environment, and analyzing the results of the opening via a behavioral analysis; and

wherein a predetermined rating assigned to a predetermined fingerprint associated with a known harmful macro-instruction indicates a greater severity of risk than a predetermined rating assigned to a predetermined fingerprint associated with a URL.

2. The method as set forth in claim 1 , wherein providing the rating to the recipient includes displaying an icon adjacent to a link to the electronic message.

3. The method as set forth in claim 1 , wherein providing the rating to the recipient includes displaying the rating in a window when a cursor is placed over a link to the electronic message.

4. The method as set forth in claim 1 , wherein providing the rating to the recipient includes displaying another electronic message containing the rating in a window when the electronic message is selected and prior to opening the electronic message.

5. The method as set forth in claim 1 , further comprising scanning an attachment of the electronic message.

6. The method as set forth in claim 5 , wherein the electronic message is rated based on the scanning of the attachment.

7. The method as set forth in claim 1 , further comprising scanning a message body of the electronic message for one or more keywords.

8. The method as set forth in claim 7 , wherein the electronic message is rated based on identification of the one or more keywords in the message body of the electronic message.

9. The method as set forth in claim 1 , wherein the rating includes a categorization.

10. The method as set forth in claim 1 , wherein one or more additional electronic messages are provided to the recipient based on the rating.

11. The method as set forth in claim 1 , wherein an automatic response is initiated if the rating includes a predetermined rating.

12. The method as set forth in claim 1 , wherein at least part of the electronic message is sent to the database, based on the rating.

13. The method as set forth in claim 1 , wherein the electronic message is rated with a particular rating associated with the at least one of the predetermined fingerprints stored in the database that matches the fingerprint for the one or more portions of the electronic message.

14. The method as set forth in claim 1 , wherein the determining of the fingerprint for the one or more portions of the electronic message includes determining a fingerprint for a header of the electronic message.

15. A computer program product embodied on a tangible non-transitory computer readable medium for performing operations on a computer, the operations comprising:

receiving an electronic message intended for a recipient;

processing the electronic message;

determining a fingerprint for one or more portions of the electronic message;

comparing the fingerprint with a plurality of predetermined fingerprints that are stored in a database and that are associated with known unwanted data, known unsolicited data, a plurality of uniform resource locators (URLs), and a plurality of known harmful macro-instructions to be executed on a particular computer, wherein each of the plurality of predetermined fingerprints is assigned a predetermined rating within a predetermined scale indicative of a severity of risk of accessing electronic message content, wherein the severity of risk indicated by the predetermined rating assigned to each of the plurality of predetermined fingerprints is based upon whether the predetermined fingerprint is associated with known unwanted data, known unsolicited data, a URL, or a known harmful macro-instruction; and

providing a rating for the electronic message if the fingerprint matches at least one of the plurality of predetermined fingerprints, the rating being based upon the predetermined rating assigned to the matching at least one predetermined fingerprint, wherein the rating is provided in conjunction with an icon that indicates whether the electronic message includes unwanted data, and wherein a different icon is provided to indicate a presence of non-malicious data in the electronic message;

wherein the processing of the electronic message is performed in a virtual environment that includes utilizing a virtual machine, opening an attachment of the electronic message in the virtual environment, identifying results of the opening of the attachment within the virtual environment, and analyzing the results of the opening via a behavioral analysis; and

wherein a predetermined rating assigned to a predetermined fingerprint associated with a known harmful macro-instruction indicates a greater severity of risk than a predetermined rating assigned to a predetermined fingerprint associated with a URL.

16. A system, comprising:

a processor; and

a memory coupled to the processor, wherein the system is configured for:

receiving an electronic message intended for a recipient;

processing the electronic message by the processor;

determining a fingerprint for one or more portions of the electronic message;

comparing the fingerprint with a plurality of predetermined fingerprints that are stored in a database and that are associated with known unwanted data, known unsolicited data, a plurality of uniform resource locators (URLs), and a plurality of known harmful macro-instructions to be executed on a computer, wherein each of the plurality of predetermined fingerprints is assigned a predetermined rating within a predetermined scale indicative of a severity of risk of accessing electronic message content, wherein the severity of risk indicated by the predetermined rating assigned to each of the plurality of predetermined fingerprints is based upon whether the predetermined fingerprint is associated with known unwanted data, known unsolicited data, a URL, or a known harmful macro-instruction, and

providing a rating for the electronic message if the fingerprint matches at least one of the plurality of predetermined fingerprints, the rating being based upon the predetermined rating assigned to the matching at least one predetermined fingerprint, wherein the rating is provided in conjunction with an icon that indicates whether the electronic message includes unwanted data, and wherein a different icon is provided to indicate a presence of non-malicious data in the electronic message;

wherein the processing of the electronic message is performed in a virtual environment that includes utilizing a virtual machine, opening an attachment of the electronic message in the virtual environment, identifying results of the opening of the attachment within the virtual environment, and analyzing the results of the opening via a behavioral analysis; and

wherein a predetermined rating assigned to a predetermined fingerprint associated with a known harmful macro-instruction indicates a greater severity of risk than a predetermined rating assigned to a predetermined fingerprint associated with a URL.

17. The system as set forth in claim 16 , further comprising memory coupled to the processor via a bus.

Assignments (8)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045056/0676 Recorded Mar 2, 2022
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 059354/0213 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →