Invention Grant
- Patent Title: System and method for adapting patterns of malicious program behavior from groups of computer systems
-
Application No.: US16010923Application Date: 2018-06-18
-
Publication No.: US11003772B2Publication Date: 2021-05-11
- Inventor: Mikhail A. Pavlyushchik , Yuri G. Slobodyanuk , Alexey V. Monastyrsky , Vladislav V. Martynenko
- Applicant: AO Kaspersky Lab
- Applicant Address: RU Moscow
- Assignee: AO Kaspersky Lab
- Current Assignee: AO Kaspersky Lab
- Current Assignee Address: RU Moscow
- Agency: Arent Fox LLP
- Agent Michael Fainberg
- Main IPC: G06F21/56
- IPC: G06F21/56

Abstract:
Disclosed are systems and methods for adapting a pattern of dangerous behavior of programs. A teaching module may load into an activity monitor the pattern and establish a first usage mode for it, during which the activity monitor detects threats that correspond to that pattern, but does not perform actions for their removal. Later, in the course of a teaching period, the activity monitor detects threats based on the detection of events from the mentioned pattern. If the events have occurred as a result of user actions, and the events have a recurring nature or are regular in nature, the teaching module adds parameters to the pattern which exclude from subsequent detection those events or similar events. Upon expiration of the teaching period, the teaching module converts the pattern of dangerous behavior of programs to the second usage mode, during which threats are detected using the modified pattern and removed.
Public/Granted literature
- US20190121975A1 SYSTEM AND METHOD FOR ADAPTING PATTERNS OF MALICIOUS PROGRAM BEHAVIOR FROM GROUPS OF COMPUTER SYSTEMS Public/Granted day:2019-04-25
Information query