Inventors:
Chandrasekhar Kalle - Santa Clara CA, US
Assignee:
Symantec Corporation - Mountain View CA
International Classification:
G06F 12/14
Abstract:
A computer-implemented method for detecting automated spam programs designed to transmit unauthorized electronic mail via endpoint machines may comprise: 1) monitoring electronic-mail traffic on an endpoint machine, 2) identifying a computer program on the endpoint machine that is responsible for at least a portion of the electronic-mail traffic on the endpoint machine, 3) accessing at least one rule for determining, based on characteristics of the program, whether the program comprises a spam program, and then 4) determining, by applying the rule to the program, whether the program comprises a spam program. Corresponding systems and computer-readable media are also disclosed.