John P. Watters - Dallas TX, US Jonathan M. Couch - Woodbridge VA, US Sam F. Stover - Orrtanna PA, US Michael J. Weinberger - Dallas TX, US Fredrick Doyle - Albuquerque NM, US Gregory MacManus - Centreville VA, US
Assignee:
ISIGHT PARTNERS, INC. - Dallas TX
International Classification:
G06F 9/45
US Classification:
717140
Abstract:
A system for electronic crime reduction is provided, comprising a computer system, a database, a malware de-compiler, a malware parser, and an inference engine. The database contains information that associates electronic crime attack signature data with at least one of an individual, a group, and a location. The malware de-compiler, when executed on the computer system, translates a first malware executable to an assembly language version. The first malware is associated with an electronic crime that has been committed. The malware parser, when executed on the computer system, analyzes the assembly language version to identify distinctive coding preferences used to develop the first malware. The inference engine, when executed on the computer system, analyzes the distinctive coding preferences identified by the malware parser application in combination with searching the database to identify one of an individual, a group, and a location associated with the electronic crime.
- Dallas TX, US Jonathan M. Couch - Woodbridge VA, US Sam F. Stover - Orrtanna PA, US Michael J. Weinberger - Dallas TX, US Frederick Doyle - Albuquerque NM, US Gregory MacManus - Centreville VA, US
International Classification:
G06Q 40/00
US Classification:
705 35
Abstract:
A system for electronic crime reduction is provided, comprising a computer system, a database, a malware de-compiler, a malware parser, and an inference engine. The database contains information that associates electronic crime attack signature data with at least one of an individual, a group, and a location. The malware de-compiler, when executed on the computer system, translates a first malware executable to an assembly language version. The first malware is associated with an electronic crime that has been committed. The malware parser, when executed on the computer system, analyzes the assembly language version to identify distinctive coding preferences used to develop the first malware. The inference engine, when executed on the computer system, analyzes the distinctive coding preferences identified by the malware parser application in combination with searching the database to identify one of an individual, a group, and a location associated with the electronic crime.
Immaculate Conception High School Montclair NJ 1990-1994
Community:
Marlyn Holmes, Stephanie Hailey, Albert Florence, Saufia Gordon, Pedro Santos, Victor Cassese, Alexander Jurevich, John Jackson, Eyvone Veal, Lucia Orlando