Mandiant, Inc.
Launcher for setting analysis environment variations for malware detection

Last updated:

Abstract:

A system and method for automatically analyzing an object for malware is described. Operating one or more virtual machines, the system and method provide an analysis environment variation framework to provide a more robust analysis of an object for malware. The multi-application, multi-plugin processing framework is configured within a virtual machine, where the framework for configuring a plurality of processes for analyzing the object for malware and each of plurality of processes is configured with a different application and plug-in combination selected based in part on a type of object being analyzed and operating concurrently with each other.

Status:
Grant
Type:

Utility

Filling date:

6 May 2019

Issue date:

10 Nov 2020