FIELD: physics, computer engineering.
SUBSTANCE: invention relates to protection from computer threats and specifically to means of analysing file launch events for determining safety ranking thereof. The method includes assigning a safety ranking to at least one file; registering a user-initiated launch of at least one file; monitoring events in an operating system, including file launch events; comparing information on a least one file launched in the operating system with information on at least one file whose launch has been registered; lowering the safety ranking of the file if there is no information on the launch thereof, or raising the safety ranking if information on the launch thereof is available; excluding files whose safety ranking is higher than a given threshold from antivirus scanning.
EFFECT: faster antivirus scanning.
21 cl, 5 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD OF PROTECTING CLOUD INFRASTRUCTURE FROM ILLEGAL USE | 2012 |
|
RU2536663C2 |
SYSTEM AND METHOD FOR IMPROVING QUALITY OF DETECTING MALICIOUS OBJECTS USING RULES AND PRIORITIES | 2012 |
|
RU2514140C1 |
SYSTEM AND METHOD OF CREATING ANTIVIRUS RECORD | 2018 |
|
RU2697954C2 |
SYSTEM AND METHOD FOR PERFORMING ANTI-VIRUS SCAN OF FILE ON VIRTUAL MACHINE | 2016 |
|
RU2628921C1 |
SYSTEM AND METHOD OF DETECTING MALICIOUS CODE IN FILE | 2016 |
|
RU2637997C1 |
METHOD FOR AUTOMATIC ADJUSTMENT OF SECURITY MEANS | 2012 |
|
RU2514137C1 |
SYSTEM AND METHOD FOR IDENTIFYING MALICIOUS FILES | 2017 |
|
RU2673407C1 |
METHOD OF CREATING ANTIVIRUS RECORD WHEN DETECTING MALICIOUS CODE IN RANDOM-ACCESS MEMORY | 2015 |
|
RU2592383C1 |
SYSTEM AND METHOD TO PROTECT COMPUTER SYSTEM AGAINST ACTIVITY OF HARMFUL OBJECTS | 2011 |
|
RU2468427C1 |
SYSTEM AND METHOD OF DETECTING LATENT BEHAVIOUR OF BROWSER EXTENSION | 2018 |
|
RU2697950C2 |
Authors
Dates
2014-10-20—Published
2012-09-28—Filed