Invention Grant
- Patent Title: Analysis of malware
-
Application No.: US17255958Application Date: 2019-06-28
-
Publication No.: US12013941B2Publication Date: 2024-06-18
- Inventor: George Robert Kurtz , Dmitri Alperovitch , Amol Kulkarni , Jan Miller , Daniel Radu
- Applicant: CrowdStrike, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: CrowdStrike, Inc.
- Current Assignee: CrowdStrike, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Lee & Hayes, P.C.
- International Application: PCT/US2019/039839 2019.06.28
- International Announcement: WO2020/006415A 2020.01.02
- Date entered country: 2020-12-23
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06F21/00 ; G06F21/57

Abstract:
A security service can determine a synthetic context based at least in part on context data associated with a first malware sample, and detonate the first malware sample in the synthetic context to provide one or more first event records representing events performed by the first malware sample and detected during detonation. Additionally or alternatively, the security service can detonate the first malware sample and locate a second malware sample in a corpus based at least in part on the one or more first event records. Additionally or alternatively, the security service can receive event records representing events detected during a detonation of a first malware sample, the detonation based at least in part on context data, and locate a second malware sample in the corpus based at least in part on the one or more reference event records.
Public/Granted literature
- US20210117544A1 Analysis of Malware Public/Granted day:2021-04-22
Information query