Invention Grant
- Patent Title: System and methods for detection of cryptoware
-
Application No.: US16468290Application Date: 2017-12-11
-
Publication No.: US11244051B2Publication Date: 2022-02-08
- Inventor: Udi Yavo , Tomer Bitton , Ido Kelson , Gregory Messerman
- Applicant: Fortinet, Inc.
- Applicant Address: US CA Sunnyvale
- Assignee: Fortinet, Inc.
- Current Assignee: Fortinet, Inc.
- Current Assignee Address: US CA Sunnyvale
- Agency: HDC Intellectual Property Law, LLP
- International Application: PCT/IB2017/057785 WO 20171211
- International Announcement: WO2018/104925 WO 20180614
- Main IPC: G06F21/53
- IPC: G06F21/53 ; G06F21/00 ; G06F21/56

Abstract:
A computer implemented method for protecting data stored in at least one file from being overwritten by malicious code, comprises: monitoring at least one file stored in a storage device location to detect a request to perform an overwrite operation at least a portion of data of the at least one file; redirecting the overwrite operation to a memory location designated as safe for being overwritten; analyzing the overwrite operation at the memory location to identify an association with malicious code; and outputting an indication of an attempt to overwrite the at least one file by malicious code.
Information query