System and method for detecting malware using isolated environment

作者: Evgeny Y. Eliseev , Victor V. Yablokov

DOI:

关键词:

摘要: Disclosed system and methods for detecting malicious applications. The provides a library of handler functions. handlers functions control access one or more applications to protected resources on user device. also modifies the instead corresponding application program interface (API) receive API function calls from modified application. analyzes received behavior characteristics. When do not exhibit characteristics, perform resources. prevents

参考文章(29)
Ju Wang, Brad Calder, Andrew Chien, Method and process for virtualizing file system interfaces ,(2000)
Alexander V. Shiryaev, Vyacheslav E. Rusakov, System and method for malware protection using virtualization ,(2011)
Renata Budko, Hemma Prafullchandra, Eric Ming Chiu, Boris Belov, Boris Strongin, Methods and systems for securely managing virtualization platform ,(2009)
Motoji Matsushita Elect. Ind. Co. Ltd. Ohmori, Shunji Matsushita Elect. Ind. Co. Ltd. Harada, Toshihisa Matsushita Elect. Ind. Co. Ltd. Nakano, Content Providing System, Information Processing Device And Memory Card ,(2005)
Terrence Mitchem, Raymond Lu, Spencer Minear, Richard O'Brien, Security framework for dynamically wrapping software applications executing in a computing system ,(1999)
Jonathan Ryan Howell, Xiaofeng Fan, Collin Edward Jackson, Zhenbin Xu, Jiahe Helen Wang, Protection and communication abstractions for web browsers ,(2007)
Oded Horovitz, Yona Hollander, Ophir Rachman, Method and system for intercepting an application program interface ,(2000)