Detecting Microsoft .NET malware using machine learning on .NET structure
US12316651B2 · kind B2 · utility
0Cited by
11References
23Claims
0Family size
Assignee
Inventors
Key dates
| Filing date | Apr 26, 2022 |
| Grant date | May 27, 2025 |
| Priority date | — |
| Expiry date | Nov 2, 2042 |
Classification
- Technology area (CPC G)Physics
- CPC primaryG06N20/00
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
The present application discloses a method, system, and computer system for detecting malicious .NET files. The method includes receiving a sample that comprises a .NET file, obtaining information pertaining to common language runtime (CLR) metadata and streams associated with the .NET file, and determining whether the sample is malware based at least in part on (i) a classifier, and (ii) the information pertaining to the CLR metadata and streams.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.