Invention Grant
- Patent Title: Systems and methods for detecting malware attacks
-
Application No.: US17062732Application Date: 2020-10-05
-
Publication No.: US11792223B2Publication Date: 2023-10-17
- Inventor: Prateeksha Varshney , Siddhartha Nandi , Jayanta Basak
- Applicant: NetApp, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: NETAPP, INC.
- Current Assignee: NETAPP, INC.
- Current Assignee Address: US CA San Jose
- Agency: HAYNES AND BOONE, LLP
- Priority: IN 2041027588 2020.06.29
- Main IPC: H04L9/40
- IPC: H04L9/40 ; G06F21/60

Abstract:
A method, a computing device, and a non-transitory machine-readable medium for detecting malware attacks. In one example, an agent implemented in an operating system detects an overwrite in which an original data component is overwritten with a new data component. The agent computes a plurality of features associated with the overwrite, the plurality of features including an original entropy corresponding to the original data component, a new entropy corresponding to the new data component, an overwrite fraction, and a set of divergence features. The agent determines whether the new data component is encrypted using the plurality of features.
Public/Granted literature
- US20210409425A1 SYSTEMS AND METHODS FOR DETECTING MALWARE ATTACKS Public/Granted day:2021-12-30
Information query