Patent · US Active

Detecting Microsoft .NET malware using machine learning on .NET structure

US12316651B2 · kind B2 · utility

0Cited by
11References
23Claims
0Family size

Assignee

Inventors

Key dates

Filing dateApr 26, 2022
Grant dateMay 27, 2025
Priority date
Expiry dateNov 2, 2042

Classification

  • Technology area (CPC G)Physics
  • CPC primaryG06N20/00
  • WIPO fieldComputer technology
  • WIPO sectorElectrical engineering

Abstract

The present application discloses a method, system, and computer system for detecting malicious .NET files. The method includes receiving a sample that comprises a .NET file, obtaining information pertaining to common language runtime (CLR) metadata and streams associated with the .NET file, and determining whether the sample is malware based at least in part on (i) a classifier, and (ii) the information pertaining to the CLR metadata and streams.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.