07093239 is referenced by 301 patents and cites 99 patents.

An automated analysis system detects malicious code within a computer system by generating and subsequently analyzing a behavior pattern for each computer program introduced to the computer system. Generation of the behavior pattern is accomplished by a virtual machine invoked within the computer system. An initial analysis may be performed on the behavior pattern to identify infected programs on initial presentation of the program to the computer system. The analysis system also stores behavior patterns and sequences with their corresponding analysis results in a database. Newly infected programs can be detected by analyzing a newly generated behavior pattern for the program with reference to a stored behavior pattern to identify presence of an infection or payload pattern.

Title
Computer immune system and method for detecting unwanted code in a computer system
Application Number
9/642625
Publication Number
7093239 (B1)
Application Date
August 18, 2000
Publication Date
August 15, 2006
Inventor
Peter A J van der Made
Elandra
AU
Agent
King & Spalding
Assignee
Internet Security Systems
GA, US
IPC
G06F 12/14
G06F 11/30
G06F 9/44
View Original Source