US 12,282,544 B2
Resource monitoring device and method using hardware abstraction layer
Soohwan Jung, Seoul (KR); Thien-Phuc Doan, Seoul (KR); and Hyunseok Shim, Seoul (KR)
Assigned to FOUNDATION OF SOONGSIL UNIVERSITY-INDUSTRY COOPERATION, Seoul (KR)
Appl. No. 17/925,553
Filed by Foundation of Soongsil University-Industry Cooperation, Seoul (KR)
PCT Filed Nov. 26, 2020, PCT No. PCT/KR2020/016899
§ 371(c)(1), (2) Date Nov. 15, 2022,
PCT Pub. No. WO2021/256634, PCT Pub. Date Dec. 23, 2021.
Claims priority of application No. 10-2020-0074765 (KR), filed on Jun. 19, 2020.
Prior Publication US 2023/0195891 A1, Jun. 22, 2023
Int. Cl. G06F 21/55 (2013.01); G06F 11/07 (2006.01)
CPC G06F 21/552 (2013.01) [G06F 11/076 (2013.01); G06F 21/554 (2013.01)] 16 Claims
OG exemplary drawing
 
1. A resource monitoring apparatus comprising:
at least one hardware processor;
a not-transitory computer-readable storage medium storing instructions which, when executed by the at least one hardware processor, are configured to perform operations comprising,
extracting a method requested from a hardware abstraction layer of an operating system installed on a device and recording the extracted method to generate a log;
classifying the generated log according to a type of an interface connected to the method; and
determining a malicious activity from the classified log based on pattern information of the log set differently depending on the type of the interface.