Server-Based Malware Detection in Email Accounts
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current technologies have limitations in detecting and limiting the spread of email viruses, including failure to block newly created viruses, vulnerabilities in HTML mail, lack of local protection for web-based email users, and delayed notification to users about sent virus-infected emails.
Innovation Solution
A server-based system that monitors email accounts associated with unique addresses in address books, performs automated malware analysis, and alerts users and recipients about infected messages, while also setting up 'customized pitfalls' to detect and suppress virus propagation.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If automated malware analysis is performed on received emails, then detection accuracy of virus-infected emails is improved, but processing time and system complexity increase
Solution Approach 1:
The system performs preliminary actions by setting up monitored email accounts with unique addresses in advance, creating 'pitfalls' before viruses can spread. The server proactively monitors these accounts and prepares automated analysis capabilities ahead of time, rather than waiting for infections to occur before implementing detection measures.
Solution Approach 2:
The patent introduces a server-based intermediary system that acts as a mediator between email senders and recipients. This server monitors email accounts, performs automated malware analysis, and alerts users about infected messages. The intermediary handles the complex analysis work centrally, reducing the burden on individual email clients and users while maintaining high detection accuracy.
2Reliability
If server-based automated analysis is implemented, then detection reliability is improved, but processing time for email delivery increases
Solution Approach 1:
The system employs periodic action by monitoring email accounts at scheduled intervals and performing automated analysis on received messages. The server checks monitored accounts periodically for new emails and analyzes them systematically, rather than continuously scanning all email traffic in real-time. This periodic approach maintains reliable detection while reducing overall processing time and system resource consumption.
3Reliability
If early detection of virus-infected emails is achieved, then damage limitation is improved, but requires advanced notification systems increasing complexity
Solution Approach 1:
The patent implements feedback mechanisms where the server sends automated alerts to users when their email accounts receive messages containing malware. The system provides feedback about detected threats, notifies users of infected messages, and enables them to take corrective actions. This feedback loop allows early detection and damage limitation while keeping the notification system relatively simple through automated messaging rather than complex user interfaces.
Data Source
AI summary
One embodiment relates to a computer-implemented method for detecting malware-infected electronic mail messages. A server computer monitors an email account which is associated with a unique email address for receipt of an email message, the unique email address being associated with a unique contact in an address book on a client computer. The server computer determines that an email message addressed to the unique email address has been received and performs automated analysis to confirm that the email message contains malware. Other embodiments, aspects and features are also disclosed.


