会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 9. 发明申请
    • Detection and dynamic alteration of execution of potential software threats
    • 检测和动态改变潜在软件威胁的执行
    • US20090100520A1
    • 2009-04-16
    • US11974457
    • 2007-10-12
    • Sterling ReasorJonathan KellerJason JoyceAhmed HussainKanwaljit MarokNizan ManorSantanu Chakraborty
    • Sterling ReasorJonathan KellerJason JoyceAhmed HussainKanwaljit MarokNizan ManorSantanu Chakraborty
    • G06F21/00
    • G06F21/566G06F2221/2101G06F2221/2145
    • An arrangement for dynamically identifying and intercepting potential software threats before they execute on a computer system is provided in which a file system filter driver (called a “mini-filter”) interfaces with an anti-malware service to selectively generate an alert event and allow the threat to run, in addition to generating an alert event and suspending the threat. The decision to suspend the threat or allow it to run is made through application of a cascading logic hierarchy that includes respective policy-defined actions, user-defined actions, and signature-defined actions. The mini-filter generates the alert event to the anti-malware service whenever a file is opened, or modified and closed. The service uses an engine to scan the file to identify potential threats which are handled though application of the logic hierarchy which provides for configurations defined in a lower tier of the hierarchy to be overridden by those contained in a higher tier.
    • 提供了一种用于在计算机系统上执行之前动态识别和拦截潜在软件威胁的布置,其中文件系统过滤器驱动程序(称为“微型过滤器”)与反恶意软件服务接口以选择性地生成警报事件并允许 除了产生警报事件和暂停威胁之外,运行的威胁。 暂停威胁或允许其运行的决定是通过应用级联逻辑层次结构来实现的,层级逻辑层次结构包括相应的策略定义的动作,用户定义的动作和签名定义的动作。 微型过滤器在打开或修改和关闭文件时,向反恶意软件服务生成警报事件。 该服务使用引擎来扫描文件,以识别通过应用逻辑层次结构处理的潜在威胁,逻辑层次结构提供在层次结构的较低层中定义的配置将被包含在较高层中的层覆盖。