Invention Grant
- Patent Title: Independent malware detection architecture
-
Application No.: US16530054Application Date: 2019-08-02
-
Publication No.: US11620384B2Publication Date: 2023-04-04
- Inventor: Jared M. Smith , Rachel L. Petrik , Berat E. Arik
- Applicant: UT-Battelle, LLC
- Applicant Address: US TN Oak Ridge
- Assignee: UT-Battelle, LLC
- Current Assignee: UT-Battelle, LLC
- Current Assignee Address: US TN Oak Ridge
- Agency: Lempia Summerfield Katz LLC
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06N3/08 ; H04L9/40

Abstract:
A system and method (referred to as the system) detect malware by training a rule-based model, a functional based model, and a deep learning-based model from a memory snapshot of a malware free operating state of a monitored device. The system extracts a feature set from a second memory snapshot captured from an operating state of the monitored device and processes the feature set by the rule-based model, the functional-based model, and the deep learning-based model. The system identifies identifying instances of malware on the monitored device without processing data identifying an operating system of the monitored device, data associated with a prior identification of the malware, data identifying a source of the malware, data identifying a location of the malware on the monitored device, or any operating system specific data contained within the monitored device.
Information query