METHOD OF RECALL OF ORIGINAL FUNCTION AFTER ITS INTERCEPTION WITH SAVING OF STACK OF PARAMETERS Russian patent published in 2015 - IPC G06F9/42 G06F21/12 

Abstract RU 2546588 C2

FIELD: physics, computer engineering.

SUBSTANCE: invention relates to computer engineering. The method of recall of application function during anti-virus check contains the stages during which application functions are intercepted; the anti-virus analysis of parameters of application function recall is performed; a stack of the application for recall of the application function is prepared, in the case if the anti-virus analysis of parameters has not gave results, the address of return of original function before interception is recorded into the stack to the address following the current index of the stack for the purpose of saving of the stack of parameters during function recall; the application function is recalled.

EFFECT: ensuring correct interception of the application functions during anti-virus check by recall of the application function after its interception with saving of the stack of parameters.

6 dwg

Similar patents RU2546588C2

Title Year Author Number
METHOD OF INVOKING SYSTEM FUNCTIONS IN CONDITIONS OF USE OF AGENTS FOR PROTECTING OPERATING SYSTEM KERNEL 2014
  • Yudin Maksim Vitalevich
  • Tarasenko Aleksandr Sergeevich
  • Levchenko Vyacheslav Ivanovich
  • Kumagin Igor Yurevich
RU2585978C2
METHOD OF CREATING A SYSTEM CALL HANDLER 2014
  • Yudin Maksim Vitalevich
  • Tarasenko Aleksandr Sergeevich
  • Levchenko Vyacheslav Ivanovich
  • Kumagin Igor Yurevich
RU2596577C2
METHOD OF ACCESSING PROCEDURES OF LOADING DRIVER 2014
  • Rusakov Vyacheslav Evgenevich
  • Kirzhemanov Andrej Leonidovich
  • Parshin Yurij Gennadevich
RU2586576C1
SYSTEM AND METHOD OF PROVIDING SAFETY OF ONLINE TRANSACTIONS 2013
  • Monastyrskij Aleksej Vladimirovich
  • Golovanov Sergej Yurevich
  • Martynenko Vladislav Valerevich
  • Rusakov Vyacheslav Evgenevich
RU2587423C2
SYSTEM AND METHOD OF DETECTING THE HARMFUL CODE IN THE ADDRESS PROCESS SPACE 2017
  • Pavlyushchik Mikhail Aleksandrovich
RU2665910C1
SYSTEM AND METHOD OF DETECTING MALICIOUS SCRIPT 2017
  • Pavlyushchik Mikhail Aleksandrovich
RU2659738C1
SYSTEM AND METHOD OF ASSESSMENT OF HARMFULLNESS OF CODE EXECUTED IN ADDRESSING SPACE OF CONFIDENTIAL PROCESS 2013
  • Pavljushchik Mikhail Aleksandrovich
RU2531861C1
METHOD FOR DETECTION WORKING MALICIOUS SOFTWARE RUNNED FROM CLIENT, ON SERVER 2015
  • Ovcharik Vladislav Ivanovich
  • Bykov Oleg Grigorevich
RU2617631C2
SYSTEM AND METHOD OF GENERATING LOG WHEN EXECUTING FILE WITH VULNERABILITIES IN VIRTUAL MACHINE 2018
  • Monastyrskij Aleksej Vladimirovich
  • Pavlyushchik Mikhail Aleksandrovich
  • Pintijskij Vladislav Valerevich
  • Anikin Denis Vyacheslavovich
  • Kirsanov Dmitrij Aleksandrovich
RU2724790C1
METHOD FOR AUTOMATIC ADJUSTMENT OF SECURITY MEANS 2012
  • Zajtsev Oleg Vladimirovich
RU2514137C1

RU 2 546 588 C2

Authors

Ledenev Aleksandr Vjacheslavovich

Dates

2015-04-10Published

2013-08-21Filed