- 专利标题: System and method of identifying malicious files using a learning model trained on a malicious file
-
申请号: US16185270申请日: 2018-11-09
-
公开(公告)号: US10929533B2公开(公告)日: 2021-02-23
- 发明人: Sergey V. Prokudin , Alexey M. Romanenko
- 申请人: AO Kaspersky Lab
- 申请人地址: RU Moscow
- 专利权人: AO Kaspersky Lab
- 当前专利权人: AO Kaspersky Lab
- 当前专利权人地址: RU Moscow
- 代理机构: Arent Fox LLP
- 代理商 Michael Fainberg
- 优先权: RURU2018123695 20180629
- 主分类号: H04L29/06
- IPC分类号: H04L29/06 ; G06F21/56 ; G06N3/08
摘要:
Disclosed herein are systems and methods of identifying malicious files using a learning model trained on a malicious file. In one aspect, an exemplary method comprises selecting, using a hardware processor, the malicious file from a plurality of malicious files that are known to be harmful, selecting, using the hardware processor, a plurality of safe files from a set of safe files that are known to be safe, generating, using the hardware processor, a learning model by training a neural network with the malicious file and the plurality of safe files, generating, using the hardware processor, rules for detection of malicious files from the learning model, determining, using the hardware processor, whether attributes of an unknown file fulfill the rules for detection of malicious files using the learning model and responsive to determining that the rules for detection are fulfilled, identifying, using the hardware processor, the unknown file as malicious.
公开/授权文献
信息查询