http://rdf.ncbi.nlm.nih.gov/pubchem/patent/US-11232193-B1

Outgoing Links

Predicate Object
assignee http://rdf.ncbi.nlm.nih.gov/pubchem/patentassignee/MD5_e272285d4a0871d8f1c75f84b097f88b
classificationCPCAdditional http://rdf.ncbi.nlm.nih.gov/pubchem/patentcpc/G06F2221-033
http://rdf.ncbi.nlm.nih.gov/pubchem/patentcpc/G06F8-53
classificationCPCInventive http://rdf.ncbi.nlm.nih.gov/pubchem/patentcpc/G06F9-54
http://rdf.ncbi.nlm.nih.gov/pubchem/patentcpc/G06F21-53
http://rdf.ncbi.nlm.nih.gov/pubchem/patentcpc/G06F21-566
http://rdf.ncbi.nlm.nih.gov/pubchem/patentcpc/G06F9-44521
classificationIPCInventive http://rdf.ncbi.nlm.nih.gov/pubchem/patentipc/G06F21-56
http://rdf.ncbi.nlm.nih.gov/pubchem/patentipc/G06F9-445
http://rdf.ncbi.nlm.nih.gov/pubchem/patentipc/G06F9-54
http://rdf.ncbi.nlm.nih.gov/pubchem/patentipc/G06F21-53
filingDate 2020-11-04-04:00^^<http://www.w3.org/2001/XMLSchema#date>
grantDate 2022-01-25-04:00^^<http://www.w3.org/2001/XMLSchema#date>
inventor http://rdf.ncbi.nlm.nih.gov/pubchem/patentinventor/MD5_a948e9a281ad149d5fc17d795066162f
publicationDate 2022-01-25-04:00^^<http://www.w3.org/2001/XMLSchema#date>
publicationNumber US-11232193-B1
titleOfInvention Automated generation of a sandbox configuration for malware detection
abstract A method that automatically generates blacklists for a sandbox application. The method first obtains a set of disassembled operating system (OS) dynamic-link libraries (DLLs) and then identifies application programming interfaces (API) functions that have respective kernel interruptions. The identified API functions that have kernel instructions are saved to an interrupt list. Based on the interrupt list, a processor generates a blacklist that includes for each of the DLLs, the identified API functions in the interrupt list, all API functions that directly or indirectly invoke one of the identified API functions in the interrupt list via one or more nested API functions. The method outputs the blacklist to the sandbox application that operates on a sample file to emulate API functions of the sample file that match the blacklist. All other APIs not identified as being blacklisted, are then considered whitelisted and are allowed to run natively.
isCitedBy http://rdf.ncbi.nlm.nih.gov/pubchem/patent/US-2022138314-A1
http://rdf.ncbi.nlm.nih.gov/pubchem/patent/US-11681804-B2
http://rdf.ncbi.nlm.nih.gov/pubchem/patent/US-2021279332-A1
priorityDate 2020-11-04-04:00^^<http://www.w3.org/2001/XMLSchema#date>
type http://data.epo.org/linked-data/def/patent/Publication

Incoming Links

Predicate Subject
isDiscussedBy http://rdf.ncbi.nlm.nih.gov/pubchem/substance/SID426285529
http://rdf.ncbi.nlm.nih.gov/pubchem/compound/CID71464625

Total number of triples: 25.