Invention Grant
- Patent Title: Systems and methods for trichotomous malware classification
-
Application No.: US15356526Application Date: 2016-11-18
-
Publication No.: US10366233B1Publication Date: 2019-07-30
- Inventor: Reuben Feinman , Javier Echauz , Andrew B. Gardner
- Applicant: Symantec Corporation
- Applicant Address: US CA Mountain View
- Assignee: Symantec Corporation
- Current Assignee: Symantec Corporation
- Current Assignee Address: US CA Mountain View
- Agency: FisherBroyles, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/56 ; G06N7/00 ; G06N20/00

Abstract:
The disclosed computer-implemented method for trichotomous malware classification may include (1) identifying a sample potentially representing malware, (2) selecting a machine learning model trained on a set of samples to distinguish between malware samples and benign samples, (3) analyzing the sample using a plurality of stochastically altered versions of the machine learning model to produce a plurality of classification results, (4) calculating a variance of the plurality of classification results, and (5) classifying the sample based at least in part on the variance of the plurality of classification results. Various other methods, systems, and computer-readable media are also disclosed.
Information query