Invention Grant
- Patent Title: Method and system for identifying malware
-
Application No.: US17685588Application Date: 2022-03-03
-
Publication No.: US12135786B2Publication Date: 2024-11-05
- Inventor: Nikolay Sergeevich Prudkovskij , Dmitry Aleksandrovich Volkov
- Applicant: F.A.C.C.T. NETWORK SECURITY LLC
- Applicant Address: RU Moscow
- Assignee: F.A.C.C.T. NETWORK SECURITY LLC
- Current Assignee: F.A.C.C.T. NETWORK SECURITY LLC
- Current Assignee Address: RU Moscow
- Agency: BCF LLP
- Priority: RU2020110068 20200310
- Main IPC: G06F21/00
- IPC: G06F21/00 ; G06F21/53 ; G06F21/56

Abstract:
A method and a system for identifying malware are provided. The method comprises: during a training phase: receiving a given sample of training malware; analyzing the given sample of training malware; generating a respective behavioral report including indications of actions executed thereby in the isolated environment; determining, by analyzing the actions, for each one of the plurality of samples of training malware, a respective malware family thereof; identifying, within the respective behavioral reports associated with each one of the plurality of samples of training malware, a report group of behavioral reports associated with the samples of training malware of a given malware family; generating, for the given malware family, sets of training feature vectors; training a given classifier of an ensemble of classifiers, based on a respective set of training feature vectors to determine if a given in-use sample of malware is of the given malware family.
Public/Granted literature
- US20220188417A1 METHOD AND SYSTEM FOR IDENTIFYING MALWARE Public/Granted day:2022-06-16
Information query