IP Library Granted Patent US 10,348,742
Granted Patent B2
US 10,348,742 · App. 15/070,051 · Granted Jul 9, 2019

System, method, and computer program product for dynamically configuring a virtual environment for identifying unwanted data

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,348,742
App. No.
15/070,051
Granted
Jul 9, 2019
Kind
B2
Abstract

A system, method, and computer program product are provided for dynamically configuring a virtual environment for identifying unwanted data. In use, a virtual environment located on a first device is dynamically configured based on at least one property of a second device. Further, unwanted data is identified, utilizing the virtual environment.

Claims (42)

1. A computer readable storage disk or storage device, comprising instructions that, when executed, cause a programmable device to at least:

execute data in a virtual environment operating on the programmable device;

request configuration data associated with usage of a second device during execution of the data in the virtual environment, the configuration data including a property associated with an operating system of the second device, the usage indicated in a setting on the second device, the setting identified in contents of a registry file;

configure the virtual environment on the programmable device while the data is executed in the virtual environment based on the configuration data received in response to the request;

identify malware in the data utilizing the configured virtual environment; and

in response to identifying the malware, prevent transmission of the data.

2. The computer readable storage disk or storage device of claim 1 , wherein the instructions, when executed, cause the programmable device to configure the virtual environment based on at least one property of the second device, including configuring at least one of a list of hardware, a list of software, a patch identifier, and a binary representation of software.

3. The computer readable storage disk or storage device of claim 1 , wherein the virtual environment includes at least one of a virtual machine, an emulator and a sandbox.

4. The computer readable storage disk or storage device of claim 1 , wherein the virtual environment includes a virtual replica of the second device.

5. The computer readable storage disk or storage device of claim 1 , wherein the instructions, when executed, cause the programmable device to identify the malware utilizing an analysis of data performed in the virtual environment.

6. The computer readable storage disk or storage device of claim 1 , wherein the instructions, when executed, cause the programmable device to identify, utilizing a hierarchical data structure, the malware by analyzing data in the virtual environment.

7. The computer readable storage disk or storage device of claim 1 , wherein the instructions, when executed, cause the programmable device to perform a responsive action in response to identification of the malware.

8. The computer readable storage disk or storage device of claim 7 , wherein the responsive action includes blocking the malware.

9. A method, comprising:

executing data in a virtual environment operating on a programmable device;

requesting configuration data associated with usage of a second device during execution of the data in the virtual environment, the configuration data including a property associated with an operating system of the second device, the usage indicated in a setting on the second device, the setting identified in contents of a registry file;

configuring the virtual environment on the programmable device while the data is executed in the virtual environment based on the configuration data received in response to the request;

identifying malware in the data utilizing the virtual environment; and

in response to identifying the malware, preventing transmission of the data.

10. The method of claim 9 , wherein the virtual environment is automatically configured.

11. The method of claim 9 , wherein configuring the virtual environment includes configuring the virtual environment based on the operating system of the second device and at least one property of the second device, including configuring at least one of a list of hardware, a list of software, a patch identifier, and a binary representation of software.

12. The method of claim 9 , wherein the virtual environment includes at least one of a virtual machine, an emulator and a sandbox.

13. The method of claim 9 , wherein the virtual environment includes a virtual replica of the second device.

14. The method of claim 9 , wherein identifying malware includes utilizing an analysis of data executed in the virtual environment to identify the malware.

15. The method of claim 9 , wherein identifying the malware includes analyzing data in the virtual environment based on a hierarchical data structure.

16. The method of claim 9 , further including performing a responsive action in response to identifying the malware.

17. The method of claim 16 , wherein the responsive action includes blocking the malware.

18. The method of claim 9 , wherein the virtual environment is automatically configured.

19. A system, comprising:

a first device; and

a second device, the first device including:

one or more hardware processors; and

a memory coupled with the one or more hardware processors, on which are stored instructions that, when executed, cause at least some of the one or more hardware processors to:

execute data in a virtual environment operating on the first device;

request configuration data associated with usage of the second device during execution of the data in the virtual environment, the configuration data including a property associated with an operating system of the second device, the usage indicated in a setting on the second device, the setting identified in contents of a registry file;

configure the virtual environment on the first device while the data is executed in the virtual environment based on the configuration data received in response to the request; and

in response to identifying malware during the execution of the data, prevent transmission of the data.

20. The system of claim 19 , wherein the virtual environment is automatically configured.

21. The system of claim 19 , wherein the instructions, when executed, cause at least some of the one or more hardware processors to configure the virtual environment further based on at least one property of the second device including at least one of a list of hardware, a list of software, a patch identifier, and a binary representation of software.

22. The system of claim 19 , wherein the virtual environment includes at least one of a virtual machine, an emulator, and a sandbox.

23. The system of claim 19 , wherein the virtual environment includes a virtual replica of the second device.

24. The system of claim 19 , wherein the instructions when executed, cause at least some of the one or more hardware processors to perform a responsive action in response to identifying the malware.

Assignments (10)
CORRECTIVE ASSIGNMENT TO CORRECT THE THE PATENT TITLES AND REMOVE DUPLICATES IN THE SCHEDULE PREVIOUSLY RECORDED AT REEL: 059354 FRAME: 0335. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Jun 23, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT
Reel/Frame 060792/0307 →
SECURITY INTEREST Recorded Mar 3, 2022
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A., AS ADMINISTRATIVE AGENT AND COLLATERAL AGENT
Reel/Frame 059354/0335 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045056/0676 Recorded Mar 2, 2022
From: MORGAN STANLEY SENIOR FUNDING, INC., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 059354/0213 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 12, 2020
From: MUTTIK, IGOR G.; VOROZHTSOV, MIKHAIL YU
To: MCAFEE, INC
Reel/Frame 054352/0756 →
RELEASE OF INTELLECTUAL PROPERTY COLLATERAL - REEL/FRAME 045055/0786 Recorded Oct 26, 2020
From: JPMORGAN CHASE BANK, N.A., AS COLLATERAL AGENT
To: MCAFEE, LLC
Reel/Frame 054238/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045056 FRAME 0676. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 054206/0593 →
CORRECTIVE ASSIGNMENT TO CORRECT THE REMOVE PATENT 6336186 PREVIOUSLY RECORDED ON REEL 045055 FRAME 786. ASSIGNOR(S) HEREBY CONFIRMS THE SECURITY INTEREST. Recorded Oct 22, 2020
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 055854/0047 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: MORGAN STANLEY SENIOR FUNDING, INC.
Reel/Frame 045056/0676 →
SECURITY INTEREST Recorded Jan 12, 2018
From: MCAFEE, LLC
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 045055/0786 →
CHANGE OF NAME AND ENTITY CONVERSION Recorded Aug 24, 2017
From: MCAFEE, INC.
To: MCAFEE, LLC
Reel/Frame 043665/0918 →