Malware modeling detection system and method for mobile platforms
US8321941B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Apr 6, 2007 |
| Grant date | Nov 27, 2012 |
| Priority date | — |
| Expiry date | Apr 13, 2030 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04W12/10
- WIPO fieldComputer technology
- WIPO sectorElectrical engineering
Abstract
A system and method for detecting malware by modeling the behavior of malware and comparing a suspect executable with the model. The system and method extracts feature elements from malware-infected applications, groups the feature elements into feature sets, and develops rules describing a malicious probability relationship between the feature elements. Using malware-free and malware-infected applications as training data, the system and method heuristically trains the rules and creates a probability model for identifying malware. To detect malware, the system and method scans the suspect executable for feature sets and applies the results to the probability model to determine the probability that the suspect executable is malware-infected.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.