专利名称:Detection of infected network devices via
analysis of responseless outgoing networktraffic
发明人:Aaron R. Davis,Timothy M. Aldrich申请号:US13610537申请日:20120911公开号:US09191399B2公开日:20151117
专利附图:
摘要:The present disclosure describes one or more systems, methods, routinesand/or techniques for detection of infected network devices via analysis of responseless
outgoing network traffic. A computer implemented method may include executing aroutine that receives as input first packet information. The method may include executinga routine that analyzes the first packet information to determine whether the first packetinformation identifies an outgoing network packet that is associated with the initiation ofa network communication. The method may include executing a routine that causesstorage and/or tracking, in one or more data stores, of the first packet information if thefirst packet information is determined to be a potential responseless packet. Themethod may include executing a routine that causes removal and/or ends tracking of thefirst packet information if the first packet information is determined to not be aresponseless packet based on analysis of second packet information.
申请人:Aaron R. Davis,Timothy M. Aldrich
地址:Seattle WA US,Kent WA US
国籍:US,US
代理机构:Kunzler Law Group, PC
更多信息请下载全文后查看
因篇幅问题不能全部显示,请点此查看更多更全内容