Invention Grant
- Patent Title: Systems and methods for detecting malware attacks
-
Application No.: US18477879Application Date: 2023-09-29
-
Publication No.: US12273377B2Publication Date: 2025-04-08
- Inventor: Prateeksha Varshney , Siddhartha Nandi , Jayanta Basak
- Applicant: NetApp Inc.
- Applicant Address: US CA San Jose
- Assignee: NetApp Inc.
- Current Assignee: NetApp Inc.
- Current Assignee Address: US CA San Jose
- Agency: HAYNES AND BOONE, LLP
- Priority: IN202041027588 20200629
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F21/60

Abstract:
A method, a computing device, and a non-transitory machine-readable medium for detecting malware attacks. In one example, an agent implemented in an operating system detects an overwrite in which an original data component is overwritten with a new data component. The agent computes a plurality of features associated with the overwrite, the plurality of features including an original entropy corresponding to the original data component, a new entropy corresponding to the new data component, an overwrite fraction, and a set of divergence features. The agent determines whether the new data component is encrypted using the plurality of features.
Public/Granted literature
- US20240022597A1 SYSTEMS AND METHODS FOR DETECTING MALWARE ATTACKS Public/Granted day:2024-01-18
Information query