Invention Grant
- Patent Title: System and method for detection of malicious files
-
Application No.: US16815170Application Date: 2020-03-11
-
Publication No.: US11379581B2Publication Date: 2022-07-05
- Inventor: Alexander Chistyakov , Alexey M. Romanenko
- Applicant: AO Kaspersky Lab
- Applicant Address: RU Moscow
- Assignee: AO Kaspersky Lab
- Current Assignee: AO Kaspersky Lab
- Current Assignee Address: RU Moscow
- Agency: ArentFox Schiff LLP
- Agent Michael Fainberg
- Priority: RURU2019130601 20190930
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06F16/14 ; G06N20/00 ; G06F17/18

Abstract:
A method for detection of malicious files includes training a mapping model for mapping files in a probability space. A plurality of characteristics of an analyzed file is determined based on a set of rules. A mapping of the analyzed file in probability space is generated based on the determined plurality of characteristics. A first database is searched using the generated mapping of the analyzed file to determine whether the analyzed file is associated with a family of malicious files. The first database stores mappings associated with one or more families of malicious files. In response to determining that the analyzed file is associated with the family of malicious files, a selection of one or more methods of malware detection is made from a second database. The second database stores a plurality of malware detection methods. The selected method is used to detect the associated family.
Public/Granted literature
- US20210097177A1 SYSTEM AND METHOD FOR DETECTION OF MALICIOUS FILES Public/Granted day:2021-04-01
Information query