METHOD OF DETECTING UNKNOWN PROGRAMS BY LOAD PROCESS EMULATION Russian patent published in 2013 - IPC G06F21/00 

Abstract RU 2472215 C1

FIELD: information technology.

SUBSTANCE: use of the invention in practice enables to collect data from a data medium, which are associated with a boot program, analyse the collected data, detect and determine unknown types of malicious and safe programs, treat active malicious programs and prevent infection of computer systems.

EFFECT: detection of unknown programs which alter the loading process, which is achieved by emulating the loading process of a computer system and analysing data processed in the emulated load process.

19 cl, 10 dwg

Similar patents RU2472215C1

Title Year Author Number
SYSTEM AND METHOD OF CREATING ANTIVIRUS RECORD 2018
  • Gordejchik Sergej Vladimirovich
  • Soldatov Sergej Vladimirovich
  • Sapronov Konstantin Vladimirovich
RU2697954C2
SYSTEM AND METHOD OF STORAGE OF EMULATOR STATE AND ITS FURTHER RECOVERY 2013
  • Pintijskij Vladislav Valer'Evich
  • Belov Sergej Jur'Evich
RU2553056C2
METHOD OF EMULATING SYSTEM FUNCTION CALLS FOR EVADING EMULATION COUNTERMEASURES 2012
  • Belov Sergej Jur'Evich
RU2514141C1
EMULATOR AND METHOD FOR EMULATION 2020
  • Pintijskij Vladislav Valerevich
  • Anikin Denis Vyacheslavovich
  • Kirsanov Dmitrij Aleksandrovich
  • Trofimenko Sergej Vladimirovich
RU2757409C1
SYSTEM AND METHOD OF CREATING SOFTWARE DETECTION RECORDS 2012
  • Golovkin Maksim Jur'Evich
RU2491615C1
METHOD FOR ENHANCEMENT OF OPERATIONAL EFFICIENCY OF HARDWARE ACCELERATION OF APPLICATION EMULATION 2012
  • Belov Sergej Jur'Evich
RU2514142C1
METHOD OF ACCESSING PROCEDURES OF LOADING DRIVER 2014
  • Rusakov Vyacheslav Evgenevich
  • Kirzhemanov Andrej Leonidovich
  • Parshin Yurij Gennadevich
RU2586576C1
SYSTEM AND METHOD FOR OPTIMISING EXECUTION OF ANTIVIRUS TASKS IN LOCAL AREA NETWORK 2010
  • Tikhomirov Anton Vladimirovich
  • Kulaga Andrej Aleksandrovich
RU2453917C1
METHOD OF MAINTAINING DATABASE AND CORRESPONDING SERVER 2015
  • Niemelya Yarno
  • Khyuppenen Mikko
  • Kengez Senteri
RU2698776C2
SYSTEM AND METHOD FOR IDENTIFYING MALICIOUS FILES 2017
  • Gordejchik Sergej Vladimirovich
  • Soldatov Sergej Vladimirovich
  • Sapronov Konstantin Vladimirovich
RU2673407C1

RU 2 472 215 C1

Authors

Parshin Jurij Gennad'Evich

Pintijskij Vladislav Valer'Evich

Dates

2013-01-10Published

2011-12-28Filed