Patent · US Active

Protecting against malware code injections in trusted processes

US11416612B2 · kind B2 · utility

3Cited by
0References
15Claims
0Family size

Assignee

Inventors

Key dates

Filing dateMar 15, 2019
Grant dateAug 16, 2022
Priority date
Expiry dateJan 4, 2041

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06F2221/033
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

Disclosed are systems and methods for detecting malicious applications. The described techniques detect a first process has been launched on a computing device, and monitor at least one thread associated with the first process using one or more control points of the first process. An execution stack associated with the one or more control points of the first process is received from the first process. In response to detecting activity on the one or more control points of the first process, an indication that the execution of the first process is malicious is generated by applying a machine learning classifier to the received execution stack associated with the one or more control points of the first process.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.