会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 6. 发明申请
    • AUTOMATIC RECONNECT AND REACQUISITION IN A COMPUTER INVESTIGATION SYSTEM
    • 计算机调查系统中的自动重构和反应
    • WO2006099575A2
    • 2006-09-21
    • PCT/US2006/009712
    • 2006-03-16
    • GUIDANCE SOFTWARE, INC.STONE-KAPLAN, Kimberly, A.GARRETT, Matthew, Steven
    • STONE-KAPLAN, Kimberly, A.GARRETT, Matthew, Steven
    • G06F17/30
    • G06F11/10G06F11/1443H04L41/0663H04L43/0811H04L63/0428H04L63/123H04L67/06H04L67/14H04L69/40H04L2463/062
    • An examining machine automatically reconnecting to a target machine and resuming acquisition of data stored in a device coupled to the target machine. The examining machine establishes connection with the target machine and initiates data acquisition of the device coupled to the target machine. Periodically during the data acquisition, the examining machine receives from the target machine an intermediary hash state of the data that has been acquired so far. When connection is lost during the acquisition, the examining machine is able to automatically attempt reconnection to the target machine. Once the connection is automatically reestablished, the examining machine transmits the hash state that is currently saved for the acquisition to the target machine. The target machine may then continue the hash process from this intermediate state. That is, the target machine is able to continue generating a hash value for the entire acquisition without rehashing previously acquired data because that previously acquired data is already reflected in the intermediate hash state.
    • 检查机器自动重新连接到目标机器并且恢复获取存储在耦合到目标机器的设备中的数据。 检查机器与目标机器建立连接,并启动与目标机器耦合的设备的数据采集。 在数据采集期间,检查机器从目标机器接收迄今已经获取的数据的中间散列状态。 当在采集期间连接丢失时,检查机能够自动尝试重新连接到目标机器。 一旦连接自动重新建立,检查机器将当前保存的用于采集的哈希状态发送到目标机器。 然后,目标机器可以从该中间状态继续散列处理。 也就是说,目标机器能够继续为整个采集生成散列值,而不会先前采集到的数据,因为先前获取的数据已经反映在中间散列状态。
    • 8. 发明申请
    • ENTERPRISE COMPUTER INVESTIGATION SYSTEM
    • 企业计算机调查系统
    • WO2004001532A2
    • 2003-12-31
    • PCT/US2003/018063
    • 2003-06-10
    • GUIDANCE SOFTWARE, INC.MCCREIGHT, ShawnWEBER, DominikGARRETT, Matthew
    • MCCREIGHT, ShawnWEBER, DominikGARRETT, Matthew
    • G06F
    • G06F17/30554G06F17/30528G06F17/30867G06F21/60G06F21/606G06F21/64H04L9/00H04L63/0435H04L63/0442H04L63/062H04L63/08H04L63/083H04L63/1433
    • A method, apparatus and system for secure forensic investigation of a target machine by a client machine over a communications network. In one aspect the method comprises establishing secure communication with a server over a communications network, establishing secure communication with the target machine over the communications network, wherein establishing secure communication with the target machine includes establishing secure communication between the server and the target machine, installing a servelet on the target machine, transmitting a secure command to the servelet over the communications work, executing the secure command in the servelet, transmitting data, by the target machine, in response to a servelet instruction, and receiving the data from the target machine over the communication network. It is emphasized that this abstract is provided to comply with the rules requiring an abstract which will allow a searcher or other reader to quickly ascertain the subject matter of the technical disclosure. It is submitted with the understanding that it will not be used to interpret or limit the scope or meaning of the claims.
    • 一种用于通过通信网络的客户端机器对目标机进行安全取证调查的方法,装置和系统。 在一个方面,该方法包括通过通信网络与服务器建立安全通信,通过通信网络建立与目标机器的安全通信,其中建立与目标机器的安全通信包括建立服务器与目标机器之间的安全通信,安装 目标机器上的服务器,通过通信工作向服务器发送安全命令,执行服务器中的安全命令,由目标机器响应于服务指令发送数据,以及从目标机器接收数据 通过通信网络。 要强调的是,该摘要被提供以符合要求摘要的规则,这将允许搜索者或其他读者快速确定技术公开的主题。 提交它的理解是,它不会用于解释或限制权利要求的范围或含义。