Systems and Methods for Virtualization and Emulation Assisted Malware Detection

Patent №

US 9,519,781

Granted

2016-12-13

Filed 2011

Owner

CYPHORT INC.

Lab

AI components

2

planning · hardware

Assignment

Recorded

Dataset

AIPD

2023_r1 edition

Application

13288905

Systems and methods for virtualization and emulation assisted malware detection are described. In some embodiments, a method comprises intercepting an object; instantiating and processing the object in a virtualization environment; tracing operations of the object while processing within the virtualization environment; detecting suspicious behavior associated with the object; instantiating an emulation environment in response to the detected suspicious behavior; processing, recording responses to, and tracing operations of the object within the emulation environment; detecting a divergence between the traced operations of the object within the virtualization environment to the traced operations of the object within the emulation environment; re-instantiating the virtualization environment; providing the recorded response from the emulation environment to the object in the virtualization environment; monitoring the operations of the object within the re-instantiation of the virtualization environment; identifying untrusted actions from the monitored operations; and generating a report regarding the identified untrusted actions of the object.

PlanningAI hardwareG06F 21/566G06F 9/45558G06F 21/53G06F 21/552G06F 21/554G06F 21/567H04L 63/1416H04L 63/1425+4 more

AI classification

Planning0.96
AI hardware0.95
Machine learning0.01
Knowledge representation0.00
Evolutionary computation0.00
Natural language0.00
Speech0.00
Vision0.00

Ownership

CYPHORT INC.

assignment · 280680436

Assignors

GOLSHAN, ALI, BINDER, JAMES S.

On an employer assignment, the assignors are typically the inventors.

© 2026 NYSGPT2525 LLC