IP Library Granted Patent US 8,572,731
Granted Patent B1
US 8,572,731 · App. 13/298,494 · Granted Oct 29, 2013

Systems and methods for blocking a domain based on the internet protocol address serving the domain

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,572,731
App. No.
13/298,494
Granted
Oct 29, 2013
Kind
B1
Abstract

A computer-implemented method to block a domain based on an Internet Protocol (IP) address serving the domain is described. A trigger event on a first domain is detected. The IP address serving the first domain is identified. The identified IP address is compared with a list of IP addresses. The trigger event is blocked based on a determination that the identified IP address matches at least one IP address on the list.

Claims (43)

1. A computer-implemented method to block a domain based on an Internet Protocol (IP) address serving the domain, comprising:

detecting a trigger event on a first domain;

identifying at least one additional domain accessed prior to the first domain;

identifying the IP address serving the first domain;

comparing the identified IP address with a list of IP addresses; and

blocking the trigger event based on a determination that the identified IP address matches at least one IP address on the list.

2. The method of claim 1 , further comprising analyzing characteristics of the first domain based on the determination that the identified IP address matches at least one IP address on the list.

3. The method of claim 2 , further comprising determining whether the first domain is a malicious domain based on the analyzed characteristics.

4. The method of claim 1 , further comprising transmitting data relating to the first domain to a back-end server.

5. The method of claim 4 , wherein the data indicate whether the first domain is a malicious domain.

6. The method of claim 1 , further comprising generating a notification for a user indicating whether the first domain is a malicious domain.

7. The method of claim 1 , further comprising identifying an IP address serving the addition domain and determining whether the IP address matches at least one IP address on the list.

8. The method of claim 7 , further comprising determining whether the additional domain is a malicious domain based on a determination that the IP address serving the additional domain matches at least one IP address on the list.

9. A computing device configured to block a domain based on an Internet Protocol (IP) address serving the domain, comprising:

a processor;

memory in electronic communication with the processor;

instructions stored in the memory, the instructions being executable by the processor to:

detect a trigger event on a first domain;

identify at least one additional domain accessed prior to the first domain;

identify the IP address serving the first domain;

compare the identified IP address with a list of IP addresses; and

block the trigger event based on a determination that the identified IP address matches at least one IP address on the list.

10. The computing device of claim 9 , wherein the instructions are executable by the processor to:

analyze characteristics of the first domain based on the determination that the identified IP address matches at least one IP address on the list.

11. The computing device of claim 10 , wherein the instructions are executable by the processor to:

determine whether the first domain is a malicious domain based on the analyzed characteristics.

12. The computing device of claim 9 , wherein the instructions are executable by the processor to:

transmit data relating to the first domain to a back-end server.

13. The computing device of claim 12 , wherein the data indicate whether the first domain is a malicious domain.

14. The computing device of claim 9 , wherein the instructions are executable by the processor to:

generate a notification for a user indicating whether the first domain is a malicious domain.

15. The computing device of claim 9 , wherein the instructions are executable by the processor to:

identify an IP address serving the addition domain and determining whether the IP address matches at least one IP address on the list.

16. The computing device of claim 15 , wherein the instructions are executable by the processor to:

determine whether the additional domain is a malicious domain based on a determination that the IP address serving the additional domain matches at least one IP address on the list.

17. A computer-program product for blocking a domain based on an Internet Protocol (IP) address serving the domain, the computer-program product comprising a non-transitory computer-readable medium having instructions thereon, the instructions being executable by the processor to:

detect a trigger event on a first domain;

identify at least one additional domain accessed prior to the first domain;

identify the IP address serving the first domain;

compare the identified IP address with a list of IP addresses; and

block the trigger event based on a determination that the identified IP address matches at least one IP address on the list.

18. The computer-program product of claim 17 , wherein the instructions are executable by the processor to:

analyze characteristics of the first domain based on the determination that the identified IP address matches at least one IP address on the list, wherein a determination is made as to whether the first domain is malicious based on the analyzed characteristics.

Assignments (5)
NOTICE OF SUCCESSION OF AGENCY (REEL 050926 / FRAME 0560) Recorded Sep 13, 2022
From: JPMORGAN CHASE BANK, N.A.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 061422/0371 →
SECURITY AGREEMENT Recorded Sep 13, 2022
From: NORTONLIFELOCK INC.
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 062220/0001 →
CHANGE OF NAME Recorded Jan 30, 2020
From: SYMANTEC CORPORATION
To: NORTONLIFELOCK INC.
Reel/Frame 051759/0845 →
SECURITY AGREEMENT Recorded Nov 4, 2019
From: SYMANTEC CORPORATION; BLUE COAT LLC; LIFELOCK, INC,; SYMANTEC OPERATING CORPORATION
To: JPMORGAN, N.A.
Reel/Frame 050926/0560 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 17, 2011
From: OLIVER, IAN
To: SYMANTEC CORPORATION
Reel/Frame 027243/0548 →