FIELD: information technology.
SUBSTANCE: invention relates to antivirus technologies. According to one version of implementation proposed method for excluding the process of antivirus scanning comprises the following steps: a) determining request for access to a file on the side of the process by the processes monitoring mean; b) file format is determined to be accessed from the side of said process, using event processing means; c) determining data on said process, data on said process include a list of libraries loaded to the virtual memory of the process, with the help of event processing means; d) determining stack call of file access, stack call comprises monitoring send of a request for access to file on the side of the process through other processes using event processing means; e) determining danger level of request for access to file on the side of the process on the basis of certain file format, data on said process, stack call of access to file by means of monitoring processes; f) excluding process of antivirus scanning through antivirus protection mean providing that certain danger level does not exceed a preset threshold.
EFFECT: technical result is faster antivirus scanning of the operating system due to excluding processes of antivirus scanning.
7 cl, 4 dwg
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD OF REDUCING LOAD ON OPERATING SYSTEM WHEN EXECUTING ANTIVIRUS APPLICATION | 2013 |
|
RU2571723C2 |
SYSTEM AND METHOD OF OPENING FILES CREATED BY VULNERABLE APPLICATIONS | 2015 |
|
RU2606883C2 |
SYSTEM AND METHOD OF DETECTING MALICIOUS SCRIPT | 2017 |
|
RU2659738C1 |
SYSTEM AND METHOD OF DETECTING THE HARMFUL CODE IN THE ADDRESS PROCESS SPACE | 2017 |
|
RU2665910C1 |
SYSTEM AND METHOD OF DETERMINING THE CATEGORY OF PROXY APPLICATION | 2014 |
|
RU2580032C2 |
SYSTEM AND METHOD OF ASSESSMENT OF HARMFULLNESS OF CODE EXECUTED IN ADDRESSING SPACE OF CONFIDENTIAL PROCESS | 2013 |
|
RU2531861C1 |
METHOD OF CREATING ANTIVIRUS RECORD WHEN DETECTING MALICIOUS CODE IN RANDOM-ACCESS MEMORY | 2015 |
|
RU2592383C1 |
SYSTEM AND METHOD OF ADAPTING PATTERNS OF DANGEROUS PROGRAM BEHAVIOR TO USERS' COMPUTER SYSTEMS | 2017 |
|
RU2652448C1 |
METHOD FOR ANTI-VIRUS SCANNING OF COMPUTER SYSTEM | 2015 |
|
RU2617925C2 |
MACHINE CODE ACCESS LIMITATION METHOD TO THE OPERATING SYSTEM RESOURCES | 2016 |
|
RU2625052C1 |
Authors
Dates
2016-08-27—Published
2015-09-30—Filed