Invention Grant
- Patent Title: Multi-file malware analysis
-
Application No.: US14675460Application Date: 2015-03-31
-
Publication No.: US09646159B2Publication Date: 2017-05-09
- Inventor: Jacob Asher Langton , Daniel J. Quinlan , Kyle Adams , Declan Conlon
- Applicant: Juniper Networks, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Juniper Networks, Inc.
- Current Assignee: Juniper Networks, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: Harrity & Harrity, LLP
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06F21/53

Abstract:
A device may identify a plurality of files for a multi-file malware analysis. The device may execute the plurality of files in a malware testing environment. The device may monitor the malware testing environment for behavior indicative of malware. The device may detect the behavior indicative of malware. The device may perform a first multi-file malware analysis or a second multi-file malware analysis based on detecting the behavior indicative of malware. The first multi-file malware analysis may include a partitioning technique that partitions the plurality of files into two or more segments of files to identify a file, included in the plurality of files, that includes malware. The second multi-file malware analysis may include a scoring technique that modifies a plurality of malware scores, corresponding to the plurality of files, to identify the file, included in the plurality of files, that includes malware.
Public/Granted literature
- US20160292419A1 MULTI-FILE MALWARE ANALYSIS Public/Granted day:2016-10-06
Information query