Invention Grant
- Patent Title: Detection of malicious mobile apps
-
Application No.: US15003562Application Date: 2016-01-21
-
Publication No.: US09916448B1Publication Date: 2018-03-13
- Inventor: Zhibo Zhang , Liang Sun , Longping Wu
- Applicant: Trend Micro Incorporated
- Applicant Address: JP Tokyo
- Assignee: Trend Micro Incorporated
- Current Assignee: Trend Micro Incorporated
- Current Assignee Address: JP Tokyo
- Agency: Okamoto & Benedicto LLP
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06F17/30 ; G06F21/57

Abstract:
Software development kit (SDK) class tree structures of malicious SDKs are created, with each node of the SDK class tree structures representing a class of a corresponding malicious SDK. An app class tree structure of a mobile app is also created, with each node of the app class tree structure representing a class of the mobile app. To determine if the mobile app has been created (e.g., repackaged or originally created) using at least one of the malicious SDKs, the app class tree structure is compared against the SDK class tree structures to find an SDK class tree structure that matches the app class tree structure. For confirmation, the similarity of classes of the app class tree structure relative to classes of the SDK class tree structure can be determined.
Information query