FIELD: information technologies.
SUBSTANCE: tools are disclosed, which are made as capable of providing a protection agent with the ability to identify, being in a memory that is inaccessible from the privileged mode of the operating system, whether one or more operating system resources have been modified. In certain cases such tools may make it possible for the protection agent to stay within the limits of a virtual machine dispatcher. In other cases tools may make it possible for the protection agent to stay within the limits of a separate virtual section represented by a virtual machine dispatcher. Operating outside the privileged mode of the operating system, the protection agent may be less exposed to attacks from the side of objects operating in the privileged mode of the operating system.
EFFECT: improved efficiency of operating system resources protection.
10 cl, 11 dwg
Authors
Dates
2012-09-27—Published
2007-12-19—Filed