SYSTEM AND METHOD OF DETECTING MALWARE Russian patent published in 2011 - IPC G06F21/00 G06F12/00 

Abstract RU 2430411 C1

FIELD: information technology.

SUBSTANCE: system employs a data processing apparatus designed to process programs found by a program search tool, and connected to an analyst workstation, which includes: apparatus for checking whether programs found by the search tool belong to a black or white list of programs; apparatus for emulating program code not associated with the black or white list; apparatus for tracking events occurring when executing a program during emulation; and an analyst workstation capable of emulating the program code, processing data, furnishing information, receive physiological reactions of the analyst and classify information.

EFFECT: detection of malware which cannot be classified by existing standard technologies.

15 cl, 5 dwg

Similar patents RU2430411C1

Title Year Author Number
METHOD OF PROTECTING COMPUTER SYSTEM FROM MALWARE 2011
  • Niemelja Jarno
  • Khjuppenen Mikko
  • Kengez Senteri
RU2566329C2
METHOD OF MAINTAINING DATABASE AND CORRESPONDING SERVER 2015
  • Niemelya Yarno
  • Khyuppenen Mikko
  • Kengez Senteri
RU2698776C2
METHOD OF DETECTING UNKNOWN PROGRAMS BY LOAD PROCESS EMULATION 2011
  • Parshin Jurij Gennad'Evich
  • Pintijskij Vladislav Valer'Evich
RU2472215C1
SYSTEM AND METHOD OF CREATING SOFTWARE DETECTION RECORDS 2012
  • Golovkin Maksim Jur'Evich
RU2491615C1
METHOD FOR COUNTERACTING MALICIOUS SOFTWARE (MALWARE) BY IMITATING TEST ENVIRONMENT 2020
  • Bryzgin Andrej Aleksandrovich
  • Suprunyuk Pavel Mikhajlovich
RU2748518C1
SYSTEM AND METHOD OF CREATING RULES FOR FILTERING INSIGNIFICANT EVENTS FOR EVENT LOG ANALYSIS 2012
  • Zajtsev Oleg Vladimirovich
RU2514139C1
METHOD OF INCREASING RELIABILITY OF DETECTING MALICIOUS SOFTWARE 2012
  • Golovanov Sergej Jur'Evich
RU2485577C1
SYSTEM AND METHOD OF STORAGE OF EMULATOR STATE AND ITS FURTHER RECOVERY 2013
  • Pintijskij Vladislav Valer'Evich
  • Belov Sergej Jur'Evich
RU2553056C2
METHOD OF EMULATING SYSTEM FUNCTION CALLS FOR EVADING EMULATION COUNTERMEASURES 2012
  • Belov Sergej Jur'Evich
RU2514141C1
SYSTEM AND METHOD FOR AUTOMATIC PROCESSING OF SOFTWARE SYSTEM ERRORS 2012
  • Antukh Aleksandr Ehduardovich
  • Malanov Aleksej Vladimirovich
RU2521265C2

RU 2 430 411 C1

Authors

Zajtsev Oleg Vladimirovich

Dates

2011-09-27Published

2010-03-02Filed