The patent badge is an abbreviated version of the USPTO patent document. The patent badge does contain a link to the full patent document.

The patent badge is an abbreviated version of the USPTO patent document. The patent badge covers the following: Patent number, Date patent was issued, Date patent was filed, Title of the patent, Applicant, Inventor, Assignee, Attorney firm, Primary examiner, Assistant examiner, CPCs, and Abstract. The patent badge does contain a link to the full patent document (in Adobe Acrobat format, aka pdf). To download or print any patent click here.

Date of Patent:
Nov. 09, 2021

Filed:

Nov. 25, 2019
Applicant:

Avast Software S.r.o., Prague, CZ;

Inventors:

Hiram Lew, San Francisco, CA (US);

Filip Havlí{hacek over (c)}ek, Horou{hacek over (s)}any, CZ;

Pablo Sole, Woodside, CA (US);

Tomá{hacek over (s)} Pop, Prague, CZ;

Assignee:

Avast Software s.r.o., Prague, CZ;

Attorneys:
Primary Examiner:
Int. Cl.
CPC ...
G06F 21/55 (2013.01); G06F 21/56 (2013.01); G06F 9/54 (2006.01);
U.S. Cl.
CPC ...
G06F 21/552 (2013.01); G06F 9/545 (2013.01); G06F 21/554 (2013.01); G06F 21/566 (2013.01); G06F 2221/033 (2013.01);
Abstract

Systems and methods observe and classify device events. A model containing a set of features to be observed can be determined based on machine learning and training methods. A client application can issue a transaction request to an operating system service. A determination can be made whether the operating system service, a method associated with the transaction request, and the client application are currently being observed. In response to determining that the operating system service, a method associated with the transaction request, and the client application are being observed, a behavioral vector associated with the client application can be modified to indicate that the feature represented by the method is associated with the client application. The behavioral vector can be used to determine if the client application is malware.


Find Patent Forward Citations

Loading…