Invention Grant
- Patent Title: Systems and methods of detecting malicious powershell scripts
-
Application No.: US15824820Application Date: 2017-11-28
-
Publication No.: US10579796B1Publication Date: 2020-03-03
- Inventor: Robert Jason Neel
- Applicant: UIPCO, LLC
- Applicant Address: US TX San Antonio
- Assignee: United Services Automobile Association (USAA)
- Current Assignee: United Services Automobile Association (USAA)
- Current Assignee Address: US TX San Antonio
- Agency: Dentons US LLP
- Agent Eric L. Sophir
- Main IPC: G06F21/85
- IPC: G06F21/85 ; G06F21/55 ; G06F21/56 ; H04L29/12 ; H04L29/06 ; H04L29/08

Abstract:
Disclosed herein are systems and methods of executing scanning software, such an executable software program or script (e.g., PowerShell script), by a computing device of an enterprise, such as a security server, may instruct the computing device to search all or a subset of computing devices in an enterprise network. The scanning software may identify PowerShell scripts containing particular malware attributes, according to a malicious-code dataset. The computing system executing the scanning software may scan through the identified PowerShell scripts to identify particular strings, values, or code-portions, and take a remedial action according to the scanning software programming.
Information query