-
公开(公告)号:US20200293673A1
公开(公告)日:2020-09-17
申请号:US16084081
申请日:2016-03-18
Applicant: Entit Software LLC
Inventor: Ming Sum Sam Ng , Sasi Siddharth Muthurajan , Barak Raz
Abstract: Examples herein disclose via use of a physical processor, detecting a specific application programming interface (API) call to interact with an application running on a production server. Based on the detection of the specific API call, die examples assist, using the physical processor, a scanning session based on the specific API call Using the physical processor, the examples identify a modification to the application based on the scanning session.
-
公开(公告)号:US10965697B2
公开(公告)日:2021-03-30
申请号:US15884983
申请日:2018-01-31
Applicant: EntIT Software LLC
Inventor: Pratyusa K. Manadhata , Kyle Williams , Barak Raz , Martin Arlitt
IPC: H04L29/06 , H04L29/12 , G06F40/10 , G06F40/284
Abstract: In some examples, a system counts a number of digits in a domain name. The system compares a value based on the number of digits to a threshold, and indicates that the domain name is potentially generated by malware in response to the value having a specified relationship with respect to the threshold.
-
公开(公告)号:US20190238562A1
公开(公告)日:2019-08-01
申请号:US15884988
申请日:2018-01-31
Applicant: EntIT Software LLC
Inventor: Pratyusa K. Manadhata , Kyle Williams , Barak Raz , Martin Arlitt
CPC classification number: H04L63/145 , G06F17/21 , G06F21/56 , H04L61/1511 , H04L63/101 , H04L63/1425
Abstract: In some examples, for a device that transmitted domain names, a system determines a dissimilarity between the domain names, compares a value derived from the determined dissimilarity to a threshold, and identifies the device as malware infected in response to the comparing.
-
公开(公告)号:US11449638B2
公开(公告)日:2022-09-20
申请号:US16084081
申请日:2016-03-18
Applicant: ENTIT SOFTWARE LLC
Inventor: Ming Sum Sam Ng , Sasi Siddharth Muthurajan , Barak Raz
Abstract: Examples herein disclose via use of a physical processor, detecting a specific application programming interface (API) call to interact with an application running on a production server. Based on the detection of the specific API call, die examples assist, using the physical processor, a scanning session based on the specific API call Using the physical processor, the examples identify a modification to the application based on the scanning session.
-
公开(公告)号:US11108794B2
公开(公告)日:2021-08-31
申请号:US15884978
申请日:2018-01-31
Applicant: EntIT Software LLC
Inventor: Pratyusa K. Manadhata , Kyle Williams , Barak Raz , Martin Arlitt
IPC: H04L29/06 , H04L29/12 , G06F40/263 , G06F40/284
Abstract: Systems and methods for identifying, in a domain name, n-grams that do not appear in words of a given language, where n is greater than two are disclosed. The disclosed systems and methods may include comparing a value based on a number of the identified n-grams to a threshold and indicating that the domain name is potentially generated by malware in response to the value having a specified relationship with respect to the threshold.
-
公开(公告)号:US10911481B2
公开(公告)日:2021-02-02
申请号:US15884988
申请日:2018-01-31
Applicant: EntIT Software LLC
Inventor: Pratyusa K. Manadhata , Kyle Williams , Barak Raz , Martin Arlitt
Abstract: In some examples, for a device that transmitted domain names, a system determines a dissimilarity between the domain names, compares a value derived from the determined dissimilarity to a threshold, and identifies the device as malware infected in response to the comparing.
-
公开(公告)号:US20190238573A1
公开(公告)日:2019-08-01
申请号:US15884983
申请日:2018-01-31
Applicant: EntIT Software LLC
Inventor: Pratyusa K. Manadhata , Kyle Williams , Barak Raz , Martin Arlitt
CPC classification number: H04L63/1425 , G06F17/21 , H04L61/1511 , H04L63/101 , H04L63/145
Abstract: In some examples, a system counts a number of digits in a domain name. The system compares a value based on the number of digits to a threshold, and indicates that the domain name is potentially generated by malware in response to the value having a specified relationship with respect to the threshold.
-
公开(公告)号:US20190238572A1
公开(公告)日:2019-08-01
申请号:US15884978
申请日:2018-01-31
Applicant: EntIT Software LLC
Inventor: Pratyusa K. Manadhata , Kyle Williams , Barak Raz , Martin Arlitt
CPC classification number: H04L63/1425 , G06F17/275 , H04L61/1511 , H04L63/145
Abstract: In some examples, a system identifies, in a domain name, n-grams that do not appear in words of a given language, where n is greater than two. The system compares a value based on a number of the identified n-grams to a threshold, and indicates that the domain name is potentially generated by malware in response to the value having a specified relationship with respect to the threshold.
-
-
-
-
-
-
-