会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 4. 发明申请
    • Malicious software detection via memory analysis
    • 通过内存分析进行恶意软件检测
    • US20080016572A1
    • 2008-01-17
    • US11485066
    • 2006-07-12
    • Ryan M. BurkhardtAlexey Polyakov
    • Ryan M. BurkhardtAlexey Polyakov
    • G06F12/14
    • G06F21/57
    • To detect the presence of malicious software in a system, selected data in memory of the system is stored in a designated storage location and analyzed by a known safe operating system. In an example configuration, a snapshot of system memory is downloaded to a dedicated device coupled to the motherboard of the system. A clean, uncorrupted operating system is loaded into the dedicated device, and the snapshot is analyzed utilizing the clean operating system. If malicious software is detected, the system is repaired using the clean operating system. In an example embodiment, this process is initiated when the system goes into a hibernation state, and/or during a system restoration operation.
    • 为了检测系统中是否存在恶意软件,系统存储器中的选定数据被存储在指定的存储位置并由已知的安全操作系统进行分析。 在示例配置中,将系统存储器的快照下载到耦合到系统主板的专用设备。 一个干净,不破坏的操作系统被加载到专用设备中,并且使用干净的操作系统来分析快照。 如果检测到恶意软件,则使用干净的操作系统修复系统。 在示例实施例中,当系统进入休眠状态时和/或在系统恢复操作期间启动该过程。