发明申请
- 专利标题: Realtime Kernel Object Table and Type Protection
- 专利标题(中): 实时内核对象表和类型保护
-
申请号: US13476881申请日: 2012-05-21
-
公开(公告)号: US20130312099A1公开(公告)日: 2013-11-21
- 发明人: Jonathan L. Edwards , Aditya Kapoor
- 申请人: Jonathan L. Edwards , Aditya Kapoor
- 申请人地址: US CA Santa Clara
- 专利权人: MCAFEE, INC.
- 当前专利权人: MCAFEE, INC.
- 当前专利权人地址: US CA Santa Clara
- 主分类号: G06F21/00
- IPC分类号: G06F21/00
摘要:
A method for detecting malware includes determining one or more object-oriented components of an electronic device, trapping at a level below all of the operating systems of the electronic device an attempt to access an object-oriented component of the electronic device, determining an entity causing the attempt, accessing one or more security rules, and, based on the security rules, the entity causing the attempt, and the object-oriented component, determining whether the attempted access is indicative of malware.
信息查询