Invention Grant
- Patent Title: System and method for training a model for detecting malicious objects on a computer system
-
Application No.: US16459718Application Date: 2019-07-02
-
Publication No.: US11036858B2Publication Date: 2021-06-15
- Inventor: Alexander S. Chistyakov , Alexey M. Romanenko , Alexander S. Shevelev
- Applicant: AO Kaspersky Lab
- Applicant Address: RU Moscow
- Assignee: AO Kaspersky Lab
- Current Assignee: AO Kaspersky Lab
- Current Assignee Address: RU Moscow
- Agency: Arent Fox LLP
- Agent Michael Fainberg
- Priority: RURU2018147230 20181228
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06N5/02 ; G06N20/10 ; G06K9/62

Abstract:
Methods and systems are described in the present disclosure for training a model for detecting malicious objects on a computer system. In an exemplary aspect, a method includes: selecting files from a database used for training a detection model, the selection is performed based on learning rules, performing an analysis on the files by classifying them in a hierarchy of maliciousness, forming behavior patterns based on execution of the files and parameters of the execution, training the detection model according to the analysis of the files and the behavior patterns, verifying the trained detection model using a test selection of files to test determinations of harmfulness of the test selection of files, and when the verification fails, retraining the detection model using a different set of files from the database, otherwise applying the detection model to a new set of files to determine maliciousness.
Public/Granted literature
- US20200210573A1 SYSTEM AND METHOD FOR TRAINING A MODEL FOR DETECTING MALICIOUS OBJECTS ON A COMPUTER SYSTEM Public/Granted day:2020-07-02
Information query