Simulating user interactions for malware analysis
US11706251B2 · kind B2 · utility
Assignee
Inventors
Key dates
| Filing date | Oct 22, 2021 |
| Grant date | Jul 18, 2023 |
| Priority date | — |
| Expiry date | Oct 22, 2041 |
Classification
- Technology area (CPC H)Electricity
- CPC primaryH04L63/0254
- WIPO fieldDigital communication
- WIPO sectorElectrical engineering
Abstract
Simulating user interactions during dynamic analysis of a sample is disclosed. A sample is received for analysis. Prior to execution of the sample, a baseline screenshot of a system folder is generated by accessing frame buffer data stored on a graphics card. The sample is caused to execute, at least in part using one or more hypervisor instructions to move a pointing device to an icon associated with the sample. A current screenshot of the system folder is generated by accessing current frame buffer data stored on the graphics card.
Source: USPTO / EPO open patent data. Objective bibliographic and citation counts.