FIELD: information technology.
SUBSTANCE: system includes the means of analysis for identifying the classes and methods in the checked executable DEX file, identifying the bytecode for each method, determining specific instructions for each method by means of identifying the appropriate instruction opcode from the bytecode, transferring certain methods and instructions with the appropriate instruction opcode to the vectors-creating tool; the means for creating vectors for dividing all the instructions specific for each method into the functional groups that are pre-defined, counting the number of the instructions belonging to each functional group of the corresponding method, the presentation of each method in the form of a vector based on the number of instructions in said group, transferring the generated methods vectors into the comparator device; the comparator device for comparing the generated vectors of the scanned file methods with the vectors of malicious files and for drawing up the verdict about the maliciousness of the scanned file; the means of storing the malicious files methods vectors base.
EFFECT: prevention of committing malicious actions on mobile devices containing the Android operating system.
12 cl, 6 dwg, 2 tbl
Title | Year | Author | Number |
---|---|---|---|
SYSTEM AND METHOD FOR AUTOMATIC MODIFICATION OF ANTIVIRUS DATABASE | 2012 |
|
RU2536664C2 |
METHOD FOR FASTER FULL ANTIVIRUS SCANNING OF FILES ON MOBILE DEVICE | 2019 |
|
RU2726878C1 |
METHOD FOR SELECTIVE REPEATED ANTIVIRUS SCANNING OF FILES ON MOBILE DEVICE | 2019 |
|
RU2726877C1 |
METHOD AND SYSTEM FOR DETECTING MALICIOUS FILES IN A NON-ISOLATED MEDIUM | 2020 |
|
RU2722692C1 |
SYSTEM AND METHOD OF SIMILAR FILES DETERMINING | 2015 |
|
RU2614561C1 |
METHOD FOR DETECTION OF MALICIOUS SOFTWARE CODES IN NETWORK DATA TRAFFIC, INCLUDING EXPOSED TO COMBINATION OF POLYMORPHIC TRANSFORMATIONS | 2016 |
|
RU2615317C1 |
SYSTEM AND METHOD FOR REDUCING LOAD ON MALWARE DETECTION SERVICE | 2019 |
|
RU2739833C1 |
SYSTEM AND METHOD FOR DETECTING MALWARE BY CREATING ISOLATED ENVIRONMENT | 2012 |
|
RU2535175C2 |
SYSTEM AND METHOD FOR CATEGORIZING APPLICATION ON COMPUTING DEVICE | 2019 |
|
RU2747514C2 |
SYSTEM AND METHOD OF MAKING FLEXIBLE CONVOLUTION FOR MALWARE DETECTION | 2013 |
|
RU2580036C2 |
Authors
Dates
2017-03-28—Published
2015-06-30—Filed