×

Determining malware based on signal tokens

  • US 9,798,981 B2
  • Filed: 08/27/2013
  • Issued: 10/24/2017
  • Est. Priority Date: 07/31/2013
  • Status: Expired due to Fees
First Claim
Patent Images

1. A computing device comprising:

  • a memory and at least one hardware processor to execute a plurality of modules including;

    a static code analysis module to generate a set of tokens from an application under test according to obfuscation tolerant rules, wherein each token of the set of tokens is generated upon a hit to one of the obfuscation tolerant rules;

    a signal generation module to generate a plurality of signal tokens from the set of tokens using a set of grouping rules, wherein each signal token is generated from a grouping of multiple tokens based on a grouping rule; and

    a classification module to perform a Bayes classification to compare the plurality of signal tokens with a signal token database to determine a likelihood of whether malware is included in the application under test.

View all claims
  • 8 Assignments
Timeline View
Assignment View
    ×
    ×