Patent
Layout scanner for application classification
Wen-Chih Lee,Ming-Chang Shih,Wei-Chung Chou +2 more
- 11 Oct 2011
4
TL;DR: In this article, a database of known graphical user interface layouts is generated using samples of known executable files, and an executable file having an unknown function is obtained; it is executed within a safe environment and its graphical interface is identified.
read more
Abstract: A database of known graphical user interface layouts is generated using samples of known executable files. An executable file having an unknown function is obtained; it is executed within a safe environment and its graphical user interface is identified. Layout analysis enumerates all of the windows within the interface and extracts the position values of each window and the dimension values of each window to form a set of layout information. If the layout database contains this layout information set then it is determined that the layout information is of the same type of software corresponding to the type of software contained within the database (or of the type of software to which the layout information is matched within the database). A match may occur if all the windows match, if only some percentage of the windows match, or if the windows do not match exactly but the dimensions of the corresponding window in the database are within a certain percentage.
read more
Chat with Paper
AI Agents for this Paper
Find similar papers on Google Scholar, PubMed and Arxiv
Write a critical review of this paper
Analyze citations of this paper to find unaddressed research gaps
Citations
Patent
Systems and methods for behavior-based automated malware analysis and classification
Aziz Mohaisen,Omar Alrawi,Matt Larson +2 more
- 20 Feb 2015
TL;DR: In this paper, a set of low-level behavioral artifacts produced by malware samples are used to organize or identify features, based upon which the sample can be classified and/or clustered into different labels, groups, or categories.
25
Patent
System and method of analysis of files for maliciousness in a virtual machine
Pintiysky Vladislav,Anikin Denis,Kobychev Denis Y,Golovkin Maxim Y,Vitaly V Butuzov,Dmitry V Karasovsky,Kirsanov Dmitry A +6 more
- 09 Aug 2018
TL;DR: In this paper, the authors present systems and methods of analysis of files for maliciousness in a virtual machine, which includes: opening and executing a file by a processor in a VM, intercepting an event arising in the process of execution of a thread of a process created upon opening of the file, halting the execution of the thread, reading the context of the processor on which the thread is being executed, comparing the context with one or more rules, and based on the results of the comparison, performing at least one of: recognizing the file as being malicious; halting the process
2
Patent
System and method of blocking access to protected applications
Alexander V. Kalinin,Pavel L. Polozov,Vyacheslav I. Levchenko,Maxim V. Yudin +3 more
- 01 Feb 2018
TL;DR: In this paper, the authors present a method for blocking access to protected applications by intercepting access by a process of first information to be displayed on the user's device, determining second information based on the interception of the access by the process, the second information associated with the process; determining a region on a display of the device associated with first information; analyzing one or more intersections between the region and at least one graphic interface associated with process; and blocking the access of the process to the first information based upon the analysis of the one or many intersections between region and the at least
1
Patent
System and method of analysis of files for maliciousness and determining an action
Pintijskij Vladislav Valerevich,Anikin Denis Vyacheslavovich,Kobychev Denis Y,Golovkin Maxim Y,Butuzov Vitalij Vladimirovich,Dmitry V Karasovsky,Kirsanov Dmitry A +6 more
- 05 Sep 2019
TL;DR: In this article, the authors present a system for analysis of files for maliciousness and determining an action based on the analysis of the file contents and the context of the processor on which the file is being executed.
References
Query by image and video content: the QBIC system
Myron D. Flickner,Harpreet Sawhney,W. Niblack,Jonathan Ashley,Qian Huang,Byron Dom,Monika Gorkani,James Lee Hafner,D. Lee,Dragutin Petkovic,David Steele,Peter Cornelius Yanker +11 more
TL;DR: The Query by Image Content (QBIC) system as discussed by the authors allows queries on large image and video databases based on example images, user-constructed sketches and drawings, selected color and texture patterns, camera and object motion, and other graphical information.
Related Papers (5)
Zeng Fanxu,Zeng Jicai,Fang Yi,Zhu Ling,Yu Qingfeng +4 more
- 22 Jun 2016
Murakami Tetsukazu
- 07 Feb 1991
Araki Masao
- 28 Oct 1991