SYSTEM AND METHOD FOR DETECTING MALWARE BY CREATING ISOLATED ENVIRONMENT Russian patent published in 2014 - IPC G06F21/56 

Abstract RU 2535175 C2

FIELD: physics, computer engineering.

SUBSTANCE: invention relates to means of detecting malware. The technical result is high mobile device security. The code of the investigated application is modified by replacing critical function call with handler function call. Information on critical functions called by the modified investigated application through the handler function is gathered. Information on presence of behaviour typical for malware is analysed.

EFFECT: detecting malware based on analysis.

7 cl, 7 dwg

Similar patents RU2535175C2

Title Year Author Number
SYSTEM AND METHOD OF IMPROVING ORGANISATION DATA SECURITY BY CREATING ISOLATED ENVIRONMENT 2012
  • Jablokov Viktor Vladimirovich
  • Eliseev Evgenij Jur'Evich
RU2541895C2
METHOD OF CREATING SCRIPT OF POPULAR ACTIVATION EVENTS 2015
  • Eliseev Evgenij Yurevich
  • Yablokov Viktor Vladimirovich
RU2679783C2
METHOD AND SYSTEM FOR DETECTING MALICIOUS SOFTWARE BY CONTROL OF SOFTWARE IMPLEMENTATION RUNNING UNDER SCRIPT 2013
  • Eliseev Evgenij Yurevich
  • Yablokov Viktor Vladimirovich
RU2653985C2
SYSTEM AND METHOD OF PROTECTING COMPUTER APPLICATIONS 2011
  • Rusakov Vjacheslav Evgen'Evich
  • Shirjaev Aleksandr Vasil'Evich
RU2460133C1
METHOD OF ACCESSING PROCEDURES OF LOADING DRIVER 2014
  • Rusakov Vyacheslav Evgenevich
  • Kirzhemanov Andrej Leonidovich
  • Parshin Yurij Gennadevich
RU2586576C1
SYSTEM AND METHOD OF CREATING SOFTWARE DETECTION RECORDS 2012
  • Golovkin Maksim Jur'Evich
RU2491615C1
METHOD OF CREATING A SYSTEM CALL HANDLER 2014
  • Yudin Maksim Vitalevich
  • Tarasenko Aleksandr Sergeevich
  • Levchenko Vyacheslav Ivanovich
  • Kumagin Igor Yurevich
RU2596577C2
METHOD OF INVOKING SYSTEM FUNCTIONS IN CONDITIONS OF USE OF AGENTS FOR PROTECTING OPERATING SYSTEM KERNEL 2014
  • Yudin Maksim Vitalevich
  • Tarasenko Aleksandr Sergeevich
  • Levchenko Vyacheslav Ivanovich
  • Kumagin Igor Yurevich
RU2585978C2
SYSTEM AND METHOD OF ASSESSMENT OF HARMFULLNESS OF CODE EXECUTED IN ADDRESSING SPACE OF CONFIDENTIAL PROCESS 2013
  • Pavljushchik Mikhail Aleksandrovich
RU2531861C1
SYSTEM AND METHOD OF OPENING FILES CREATED BY VULNERABLE APPLICATIONS 2015
  • Efremov Andrej Anatolevich
  • Ladikov Andrej Vladimirovich
  • Solodovnikov Andrej Yurevich
  • Monastyrskij Aleksej Vladimirovich
RU2606883C2

RU 2 535 175 C2

Authors

Jablokov Viktor Vladimirovich

Eliseev Evgenij Jur'Evich

Dates

2014-12-10Published

2012-12-25Filed