- 专利标题: Detecting unknown malicious content in computer systems
-
申请号: US16821722申请日: 2020-03-17
-
公开(公告)号: US11689561B2公开(公告)日: 2023-06-27
- 发明人: Christian Seifert , Jack Wilson Stokes, III , Kristian Holsheimer
- 申请人: MICROSOFT TECHNOLOGY LICENSING, LLC
- 申请人地址: US WA Redmond
- 专利权人: MICROSOFT TECHNOLOGY LICENSING, LLC
- 当前专利权人: MICROSOFT TECHNOLOGY LICENSING, LLC
- 当前专利权人地址: US WA Redmond
- 代理机构: Shook, Hardy & Bacon L.L.P.
- 主分类号: H04L9/40
- IPC分类号: H04L9/40 ; G06F21/56 ; G06N20/00 ; G06F9/54 ; G06F18/214 ; G06V10/764 ; G06V10/82
摘要:
Various embodiments discussed herein enable the detection of malicious content. Some embodiments do this by determining a similarity score between content, computer objects, or indications (e.g., vectors, file hashes, file signatures, code, etc.) known to be malicious and other content (e.g., unknown files) or indications based on feature weighting. Over various training stages, certain feature characteristics for each labeled malicious content or indication can be learned. For example, for a first malware family of computer objects, the most prominent feature may be a particular URL, whereas other features change considerably for different iterations of the first malware family of computer objects. Consequently, the particular URL can be weighted to determine a particular output classification corresponding to malicious behavior.
公开/授权文献
- US20210141897A1 DETECTING UNKNOWN MALICIOUS CONTENT IN COMPUTER SYSTEMS 公开/授权日:2021-05-13
信息查询