- 专利标题: Malware detection in memory
-
申请号: US16650643申请日: 2017-12-13
-
公开(公告)号: US11698964B2公开(公告)日: 2023-07-11
- 发明人: Danyu Bi , Salmin Sultana , Yuanyuan Li , Yong Jiang , Pramod Pesara , Selvakumar Panneer , Ravi Sahita
- 申请人: INTEL CORPORATION
- 申请人地址: US CA Santa Clara
- 专利权人: INTEL CORPORATION
- 当前专利权人: INTEL CORPORATION
- 当前专利权人地址: US CA Santa Clara
- 代理机构: KDW Firm PLLC
- 国际申请: PCT/CN2017/115955 2017.12.13
- 国际公布: WO2019/113843A 2019.06.20
- 进入国家日期: 2020-03-25
- 主分类号: G06F21/56
- IPC分类号: G06F21/56 ; G06F9/448 ; G06F9/30 ; G06F11/36 ; G06F12/1009 ; H04L9/40
摘要:
A system for detecting malware includes a processor to collect processor trace information corresponding to an application being executed by the processor (202). The processor can also detect an invalid indirect branch instruction from the processor trace information (204) and detect at least one malware instruction being executed by the application in response to analyzing modified memory values corresponding to the invalid indirect branch (206). Additionally, the processor can block the application from accessing or modifying memory (208).
公开/授权文献
- US20200320196A1 MALWARE DETECTION IN MEMORY 公开/授权日:2020-10-08
信息查询