System and methods for detection of new malicious executables

Number of patents in Portfolio can not be more than 2000

United States of America Patent

PATENT NO 7487544
APP PUB NO 20030065926A1
SERIAL NO

10208432

Stats

ATTORNEY / AGENT: (SPONSORED)

Importance

Loading Importance Indicators... loading....

Abstract

See full text

A system and methods for detecting malicious executable attachments at an email processing application of a computer system using data mining techniques. The email processing application may be located at the server or at the client or host. The executable attachments are filtered from said email, and byte sequence features are extracted from the executable attachment. The executable attachments are classified by comparing the byte sequence feature of the executable attachment to a classification rule set derived from byte sequence features of a data set of known executables having a predetermined class in a set of classes, e.g., malicious or benign. The system is also able to classify executable attachments as borderline when the difference between the probability that the executable is malicious and the probability that the executable is benign are within a predetermined threshold. The system can notify the user when the number of borderline attachments exceeds the threshold in order to refine the classification rule set.

Loading the Abstract Image... loading....

First Claim

See full text

Family

Loading Family data... loading....

Patent Owner(s)

  • THE TRUSTEES OF COLUMBIA UNIVERSITY IN THE CITY OF NEW YORK

International Classification(s)

  • [Classification Symbol]
  • [Patents Count]

Inventor(s)

Inventor Name Address # of filed Patents Total Citations
Bhattacharyya, Manasi Flushing , US 8 858
Eskin, Eleazar Santa Monica , US 26 2388
Salvatore, Stolfo J Ridgewood , US 1 288
Schultz, Matthew G Ithaca , US 2 406
Zadok, Erez Middle Island , US 6 761

Cited Art Landscape

Load Citation

Patent Citation Ranking

Forward Cite Landscape

Load Citation