发明申请
US20130312095A1 IDENTIFYING ROOTKITS BASED ON ACCESS PERMISSIONS 有权
基于访问权限识别基础

IDENTIFYING ROOTKITS BASED ON ACCESS PERMISSIONS
摘要:
A method for monitoring for malware includes, during a boot process on an electronic device, determining a portion of memory, determining that the portion of memory is reserved for exclusive access by an entity on the electronic device, and, based on the determination that a portion of memory is reserved for exclusive access during the boot process, determining that the reservation is indicative of malware.
公开/授权文献
信息查询
0/0