Patent · US Active

Method and system for detecting malware

US9525699B2 · kind B2 · utility

8Cited by
65References
10Claims
0Family size

Assignee

Inventors

Key dates

Filing dateSep 30, 2013
Grant dateDec 20, 2016
Priority date
Expiry dateSep 30, 2033

Classification

  • Technology area (CPC H)Electricity
  • CPC primaryH04L63/14
  • WIPO fieldDigital communication
  • WIPO sectorElectrical engineering

Abstract

A system and method of analysis. NX domain names are collected from an asset in a real network. The NX domain names are domain names that are not registered. The real network NX domain names are utilized to create testing vectors. The testing vectors are classified as benign vectors or malicious vectors based on training vectors. The asset is then classified as infected if the NX testing vector created from the real network NX domain names is classified as a malicious vector.

Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.