The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Feb. 23, 2021

Filed:

Jun. 14, 2018
Applicant:

AO Kaspersky Lab, Moscow, RU;

Inventors:
Assignee:

AO KASPERSKY LAB, Moscow, RU;

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/56 (2013.01); G06N 20/00 (2019.01); G06F 17/15 (2006.01); G06N 7/00 (2006.01); H04W 12/12 (2021.01); H04L 29/06 (2006.01); G06F 21/55 (2013.01);
U.S. Cl.
CPC ...
G06F 21/564 (2013.01); G06F 17/15 (2013.01); G06F 21/55 (2013.01); G06N 7/00 (2013.01); G06N 20/00 (2019.01); H04L 63/14 (2013.01); H04W 12/12 (2013.01);
Abstract

Disclosed are systems and methods for detection of malicious files using machine learning. An example method comprises: selecting one or more data blocks in an object being analyzed based on rules; performing a static analysis on the one or more data blocks to determine a set of features of the one or more data blocks; determining a degree of harmfulness of the object based on the set of features and a model for detection of malicious objects, wherein the model has been trained by a method for machine learning on at least one safe object and one malicious object; recognizing the object is safe when the degree of harmfulness does not exceed a predetermined threshold of harmfulness; and recognizing the object is malicious when the degree of harmfulness of the one or more data blocks exceeds the predetermined threshold of harmfulness.


Find Patent Forward Citations

Loading…