SYSTEM AND METHOD OF DETECTING THREAT IN CODE EXECUTED BY VIRTUAL MACHINE Russian patent published in 2014 - IPC G06F21/56 

Abstract RU 2522019 C1

FIELD: information technology.

SUBSTANCE: method includes modifying a virtual machine code for monitoring exceptions within the virtual machine and controlling the virtual machine; monitoring exceptions inside the virtual machine; shutting down the virtual machine when an exception occurs; obtaining exception context information containing data on virtual machine events leading to said exception; analysing the exception context for presence of behaviour typical of a threat; identifying the threat based on the analysis.

EFFECT: higher virtual machine safety.

9 cl, 4 dwg

Similar patents RU2522019C1

Title Year Author Number
METHOD AND SYSTEM FOR DETECTING MALICIOUS SOFTWARE BY CONTROL OF SOFTWARE IMPLEMENTATION RUNNING UNDER SCRIPT 2013
  • Eliseev Evgenij Yurevich
  • Yablokov Viktor Vladimirovich
RU2653985C2
METHOD OF CREATING SCRIPT OF POPULAR ACTIVATION EVENTS 2015
  • Eliseev Evgenij Yurevich
  • Yablokov Viktor Vladimirovich
RU2679783C2
SYSTEM AND METHOD FOR DETECTING MALWARE BY CREATING ISOLATED ENVIRONMENT 2012
  • Jablokov Viktor Vladimirovich
  • Eliseev Evgenij Jur'Evich
RU2535175C2
SYSTEM AND METHOD OF GENERATING LOG WHEN EXECUTING FILE WITH VULNERABILITIES IN VIRTUAL MACHINE 2018
  • Monastyrskij Aleksej Vladimirovich
  • Pavlyushchik Mikhail Aleksandrovich
  • Pintijskij Vladislav Valerevich
  • Anikin Denis Vyacheslavovich
  • Kirsanov Dmitrij Aleksandrovich
RU2724790C1
INTELLIGENT CONTROL SYSTEM FOR CYBERTHREATS 2019
  • Ryupichev Dmitrij Yurevich
  • Novikov Evgenij Aleksandrovich
  • Nichiporchuk Maksim Mikhajlovich
RU2702269C1
SYSTEM AND METHOD OF PROTECTING COMPUTING DEVICE FROM MALICIOUS OBJECTS USING COMPLEX INFECTION SCHEMES 2011
  • Poljakov Aleksej Aleksandrovich
  • Martynenko Vladislav Valer'Evich
  • Slobodjanjuk Jurij Gennad'Evich
  • Nazarov Denis Aleksandrovich
  • Pavljushchik Mikhail Aleksandrovich
RU2454705C1
METHOD FOR ADJUSTING THE PARAMETERS OF A MACHINE LEARNING MODEL IN ORDER TO IDENTIFY FALSE TRIGGERING AND INFORMATION SECURITY INCIDENTS 2020
  • Filonov Pavel Vladimirovich
  • Soldatov Sergej Vladimirovich
  • Udimov Daniil Alekseevich
RU2763115C1
METHOD OF MALICIOUS FILES DETECTING, EXECUTED BY MEANS OF THE STACK-BASED VIRTUAL MACHINE 2015
  • Ivanov Anton Mikhajlovich
  • Liskin Aleksandr Viktorovich
RU2624552C2
METHOD FOR PROCESSING INFORMATION SECURITY EVENTS PRIOR TO TRANSMISSION FOR ANALYSIS 2020
  • Filonov Pavel Vladimirovich
  • Soldatov Sergej Vladimirovich
  • Udimov Daniil Alekseevich
RU2762528C1
METHOD OF DETECTING UNKNOWN PROGRAMS BY LOAD PROCESS EMULATION 2011
  • Parshin Jurij Gennad'Evich
  • Pintijskij Vladislav Valer'Evich
RU2472215C1

RU 2 522 019 C1

Authors

Pavljushchik Mikhail Aleksandrovich

Dates

2014-07-10Published

2012-12-25Filed