FIELD: physics, computer engineering.
SUBSTANCE: invention relates systems and methods of detecting presence of malware in an operating system preventing the user from working with the operating system. To detect presence of malware in an operating system, the method includes: (a) detecting the occurrence of an event characterised by disruption of user interaction with the operating system interface; (b) comparing the current state of the operating system with patterns of states characterising operation of the of operating system with malware which prevents user interaction with the operating system interface; and (c) upon detecting said event characterised by disruption of user interaction with the operating system interface, and upon match of the current state of the operating system with said patterns of states characterising operation of the operating system with said malware, determining the presence of said malware in the operating system.
EFFECT: detecting the presence of malware preventing user interaction with an operating system interface.
11 cl, 6 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD OF ADAPTING PATTERNS OF DANGEROUS PROGRAM BEHAVIOR TO USERS' COMPUTER SYSTEMS | 2017 |
|
RU2652448C1 |
SYSTEM AND METHOD OF CREATING ANTIVIRUS RECORD | 2018 |
|
RU2697954C2 |
METHOD OF NEUTRALISING MALWARE BLOCKING PC OPERATION USING SEPARATE DEVICE FOR USER ACTIVATION OF MALWARE COUNTERACTING PROCEDURE | 2013 |
|
RU2527738C1 |
METHOD OF SELECTIVE USE OF PATTERNS OF DANGEROUS PROGRAM BEHAVIOR | 2017 |
|
RU2665909C1 |
SYSTEM AND METHOD FOR IDENTIFYING MALICIOUS FILES | 2017 |
|
RU2673407C1 |
METHOD OF CREATING SCRIPT OF POPULAR ACTIVATION EVENTS | 2015 |
|
RU2679783C2 |
METHOD AND SYSTEM FOR DETECTING MALICIOUS SOFTWARE BY CONTROL OF SOFTWARE IMPLEMENTATION RUNNING UNDER SCRIPT | 2013 |
|
RU2653985C2 |
SYSTEM AND METHOD OF DETECTING FRAUDULENT ONLINE TRANSACTIONS | 2014 |
|
RU2571721C2 |
SYSTEM AND METHOD FOR IMPROVING QUALITY OF DETECTING MALICIOUS OBJECTS USING RULES AND PRIORITIES | 2012 |
|
RU2514140C1 |
SYSTEM AND METHOD OF REDUCING LOAD ON OPERATING SYSTEM WHEN EXECUTING ANTIVIRUS APPLICATION | 2013 |
|
RU2571723C2 |
Authors
Dates
2014-10-10—Published
2012-12-25—Filed