Research ArticleOpen AccessGoogle Scholar indexed
Features of Virus Detection Mechanism in Microsoft Security Essentials (Microsoft Forefront Endpoint Protection)
Mephi, Moscow
- 1 Mephi, Moscow
Journal of Information Security·Volume 04 (2013)·Pages 124–127·Published 23 April 2013·DOI10.4236/jis.2013.42014
Copy link · social · email
Abstract
In this paper, a signature-based selective mechanism in detecting virus signatures in executable files was found and investigated. A pattern under which the Microsoft Security Essentials antivirus software not detecting a virus signature deliberately placed in files was revealed.
KeywordsAntivirusSignature-Based ApproachInformation Security SoftwareDigital SignatureType II Error
- D. S. Silnov, “Problems of Antivirus False Positives,” Applied Informatics, 2012, pp. 63-66.
- Microsoft Security Essentials—Free Antivirus Software. http://windows.microsoft. com/ru-RU/win dows/products/security- essentials
- Microsoft Forefront Endpoint Protection, Antivirus Protection against Malware. http://www.microsoft. com/ru-ru/server-cloud/fore front/ endpoint-protection.aspx
- Introduction to Code Signing. http://msdn.microso ft.com/en-us/library/ms5373 61%28v=vs. 85%29.aspx
- WinHEX. http://www.winhex.com/winhex/
- Fake Anti-Virus Software and Related Threats, Microsoft Security Center. http://www.microsoft. com/ru-ru/security/pc-security/ antivirus-rogue.aspx
- Bitdefender Antivirus Software. http://www.bitdefender.ru/
- The Stuxnet Sting. http://blogs.technet.com/b/mmpc/archive/2010/07/16/the-stuxnet-sting.aspx