Invention Grant
- Patent Title: Data-driven identification of malicious files using machine learning and an ensemble of malware detection procedures
-
Application No.: US16165051Application Date: 2018-10-19
-
Publication No.: US10853489B2Publication Date: 2020-12-01
- Inventor: Amihai Savir , Omer Sagi , Or Herman Saffar , Raul Shnier
- Applicant: EMC IP Holding Company LLC
- Applicant Address: US MA Hopkinton
- Assignee: EMC IP Holding Company LLC
- Current Assignee: EMC IP Holding Company LLC
- Current Assignee Address: US MA Hopkinton
- Agency: Ryan, Mason & Lewis, LLP
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/56 ; G06F21/55 ; G06N7/00 ; G06N20/00

Abstract:
Techniques are provided for data-driven ensemble-based malware detection. An exemplary method comprises obtaining a file; extracting metadata from the file; obtaining a plurality of malware detection procedures; selecting a subset of the plurality of malware detection procedures to apply to the file utilizing a likelihood that each of the plurality of malware detection procedures will result in a malware detection for the file based on the extracted metadata; applying the selected subset of the malware detection procedures to the file; and processing results of the subset of malware detection procedures using a machine learning model to determine a probability of the file being malware.
Public/Granted literature
Information query