EARLY RUNTIME DETECTION AND PREVENTION OF RANSOMWARE

Patent №

US 11,645,383

Granted

2023-05-09

Filed 2019

Owner

MORPHISEC INFORMATION SECURITY 2014 LTD.

Lab

AI components

1

hardware

Assignment

Recorded

Dataset

AIPD

2023_r1 edition

Application

16476939

Various automated techniques are described herein for the runtime detection/neutralization of malware executing on a computing device. The foregoing is achievable during a relatively early phase, for example, before the malware manages to encrypt any of the user's files. For instance, a malicious process detector may create decoy file(s) in a directory. The decoy file(s) may have attributes that cause such file(s) to reside at the beginning and/or end of a file list. By doing so, a malicious process targeting files in the directory will attempt to encrypt the decoy file(s) before any other file. The detector monitors operations to the decoy file(s) to determine whether a malicious process is active on the user's computing device. In response to determining that a malicious process is active, the malicious process detector takes protective measure(s) to neutralize the malicious process.

AI hardwareG06F 21/54H04L 63/1491G06F 21/554G06F 21/564G06F 21/565G06F 21/566G06N 20/00G06F 2221/2123+1 more

AI classification

AI hardware0.84
Knowledge representation0.00
Planning0.00
Vision0.00
Machine learning0.00
Natural language0.00
Evolutionary computation0.00
Speech0.00

Ownership

MORPHISEC INFORMATION SECURITY 2014 LTD.

assignment · 515930811

© 2026 NYSGPT2525 LLC