IP Library Granted Patent US 10,938,765
Granted Patent B1
US 10,938,765 · App. 15/067,222 · Granted Mar 2, 2021

Systems and methods for preparing email databases for analysis

Inventors: Ryan Schroeder (Roseville, MN); Sinh Nguyen (Eden Prairie, MN); Aaron Christensen (Apple Valley, MN); Kirk L. Searls (Blairsville, GA)
Assignee: Veritas Technologies LLC
H04L51/22H04L51/12
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,938,765
App. No.
15/067,222
Granted
Mar 2, 2021
Kind
B1
Abstract

The disclosed computer-implemented method for preparing email databases for analysis may include (1) identifying an email database that stores a plurality of emails in a plurality of tables that are formatted to be managed by a specific email application, (2) using a component of the specific email application to retrieve the plurality of emails from the database, (3) creating a denormalized dataset for the plurality of emails by combining email data from at least one table from the plurality of tables with email data from at least one other table from the plurality of tables, and (4) exporting at least a portion of the data from the denormalized dataset into at least one file in an interoperable format that is capable of being read by a plurality of applications. Various other methods, systems, and computer-readable media are also disclosed.

Claims (34)

1. A computer-implemented method for preparing email databases for analysis, at least a portion of the method being performed by a computing device comprising at least one processor, the method comprising:

identifying an email database that stores a plurality of emails in a plurality of tables that are formatted to be managed by a specific email application;

using a component of the specific email application to retrieve the plurality of emails from the database;

creating a denormalized dataset from the plurality of emails by combining email data from at least one table from the plurality of tables with email data from at least one other table from the plurality of tables, wherein the denormalized dataset has fewer tables than the email database;

determining a size of a data block to be read and analyzed by each application of a plurality of applications;

splitting at least a portion of the data from the denormalized dataset into a plurality of files, wherein a size of each file of the plurality of files is selected to be smaller than the size of the data block to be read and analyzed by each application of the plurality of applications; and

exporting the plurality of files in an interoperable format that is capable of being read and analyzed by the plurality of applications, wherein the plurality of applications analyze the plurality of files to determine at least one of a sentiment of the combined email data or a presence of malicious code in the combined email data.

2. The computer-implemented method of claim 1 , wherein the component of the specific email application comprises a dynamic link library that is used by the specific email application.

3. The computer-implemented method of claim 1 , wherein using the component of the specific email application to retrieve the plurality of emails comprises using an application programming interface to communicate with the component of the application.

4. The computer-implemented method of claim 1 , wherein the email database comprises a backup of a production email database where the plurality of emails originate.

5. The computer-implemented method of claim 1 , wherein creating the denormalized dataset comprises combining all of the tables within the plurality of tables into a single table.

6. The computer-implemented method of claim 1 , wherein the interoperable format comprises a columnar storage format.

7. A system for preparing email databases for analysis, the system comprising:

an identification module, stored in memory, that identifies an email database that stores a plurality of emails in a plurality of tables that are formatted to be managed by a specific email application;

a retrieval module, stored in memory, that uses a component of the specific email application to retrieve the plurality of emails from the database;

a creation module, stored in memory, that creates a denormalized dataset from the plurality of emails by combining email data from at least one table from the plurality of tables with email data from at least one other table from the plurality of tables, wherein the denormalized dataset has fewer tables than the email database;

an export module, stored in memory, that determines a size of a data block to be read and analyzed by each application of a plurality of applications, that splits at least a portion of the data from the denormalized dataset into a plurality of files, wherein a size of each file of the plurality of files is selected to be smaller than the size of the data block to be read and analyzed by each application of the plurality of applications, and that exports the plurality of files in an interoperable format that is capable of being read and analyzed by the plurality of applications, wherein the plurality of applications analyze the plurality of files to determine at least one of a sentiment of the combined email data or a presence of malicious code in the combined email data; and

at least one physical processor configured to execute the identification module, the retrieval module, the creation module, and the export module.

8. The system of claim 7 , wherein the component of the specific email application comprises a dynamic link library that is used by the specific email application.

9. The system of claim 7 , wherein the retrieval module uses the component of the specific email application to retrieve the plurality of emails by using an application programming interface to communicate with the component of the application.

10. The system of claim 7 , wherein the email database comprises a backup of a production email database where the plurality of emails originate.

11. The system of claim 7 , wherein the creation module creates the denormalized dataset by combining all of the tables within the plurality of tables into a single table.

12. The system of claim 7 , wherein the interoperable format comprises a columnar storage format.

13. A non-transitory computer-readable medium comprising one or more computer-readable instructions that, when executed by at least one processor of a computing device, cause the computing device to:

identify an email database that stores a plurality of emails in a plurality of tables that are formatted to be managed by a specific email application;

use a component of the specific email application to retrieve the plurality of emails from the database;

create a denormalized dataset for the plurality of emails by combining email data from at least one table from the plurality of tables with email data from at least one other table from the plurality of tables, wherein the denormalized dataset has fewer tables than the email database;

determine a size of a data block to be read and analyzed by each application of a plurality of applications;

split at least a portion of the data from the denormalized dataset into a plurality of files, wherein a size of each file of the plurality of files is selected to be smaller than the size of the data block to be read and analyzed by each application of the plurality of applications; and

export the plurality of files in an interoperable format that is capable of being read and analyzed by the plurality of applications, wherein the plurality of applications analyze the plurality of files to determine at least one of a sentiment of the combined email data or a presence of malicious code in the combined email data.

14. The non-transitory computer-readable medium of claim 13 , wherein the component of the specific email application comprises a dynamic link library that is used by the specific email application.

15. The non-transitory computer-readable medium of claim 13 , wherein the one or more computer-readable instructions cause the computing device to use the component of the specific email application to retrieve the plurality of emails by using an application programming interface to communicate with the component of the application.

16. The non-transitory computer-readable medium of claim 13 , wherein the email database comprises a backup of a production email database where the plurality of emails originate.

17. The non-transitory computer-readable medium of claim 13 , wherein the one or more computer-readable instructions cause the computing device to create the denormalized dataset by combining all of the tables within the plurality of tables into a single table.

Assignments (14)
SECURITY INTEREST Recorded Dec 12, 2025
From: ARCTERA US LLC
To: CITIBANK, N.A., AS COLLATERAL AGENT
Reel/Frame 073951/0470 →
TERMINATION AND RELEASE OF PATENT SECURITY AGREEMENT AT R/F 070530/0497 Recorded Dec 1, 2025
From: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
To: ARCTERA US LLC
Reel/Frame 073833/0730 →
TERMINATION AND RELEASE OF PATENT SECURITY AGREEMENT AT R/F 069585/0150 Recorded Dec 1, 2025
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
To: ARCTERA US LLC
Reel/Frame 073833/0848 →
RELEASE OF SECURITY INTEREST Recorded Dec 13, 2024
From: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
To: VERITAS TECHNOLOGIES LLC
Reel/Frame 069632/0613 →
RELEASE OF SECURITY INTEREST Recorded Dec 13, 2024
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
To: VERITAS TECHNOLOGIES LLC
Reel/Frame 069634/0584 →
PATENT SECURITY AGREEMENT Recorded Dec 10, 2024
From: ARCTERA US LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 069585/0150 →
SECURITY INTEREST Recorded Dec 10, 2024
From: ARCTERA US LLC
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 069563/0243 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 9, 2024
From: VERITAS TECHNOLOGIES LLC
To: ARCTERA US LLC
Reel/Frame 069548/0468 →
MERGER AND CHANGE OF NAME Recorded Feb 12, 2021
From: VERITAS US IP HOLDINGS LLC; VERITAS TECHNOLOGIES LLC
To: VERITAS TECHNOLOGIES LLC
Reel/Frame 055247/0197 →
TERMINATION AND RELEASE OF SECURITY INTEREST IN PATENTS AT R/F 052426/0001 Recorded Nov 30, 2020
From: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
To: VERITAS TECHNOLOGIES LLC
Reel/Frame 054535/0565 →
SECURITY INTEREST Recorded Aug 20, 2020
From: VERITAS TECHNOLOGIES LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS NOTES COLLATERAL AGENT
Reel/Frame 054370/0134 →
PATENT SECURITY AGREEMENT SUPPLEMENT Recorded Apr 16, 2020
From: VERITAS TECHNOLOGIES, LLC
To: WILMINGTON TRUST, NATIONAL ASSOCIATION, AS COLLATERAL AGENT
Reel/Frame 052426/0001 →
PATENT SECURITY AGREEMENT Recorded Nov 23, 2016
From: VERITAS TECHNOLOGIES LLC
To: BANK OF AMERICA, N.A., AS COLLATERAL AGENT
Reel/Frame 040679/0466 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 11, 2016
From: SCHROEDER, RYAN; NGUYEN, SINH; CHRISTENSEN, AARON; SEARLS, KIRK L.
To: VERITAS US IP HOLDINGS LLC
Reel/Frame 037951/0490 →