SYSTEM, METHOD, AND COMPUTER PROGRAM PRODUCT FOR COMPARING AN OBJECT WITH OBJECT ENUMERATION RESULTS TO IDENTIFY AN ANOMALY THAT AT LEAST POTENTIALLY INDICATES UNWANTED ACTIVITY
    3.
    发明申请
    SYSTEM, METHOD, AND COMPUTER PROGRAM PRODUCT FOR COMPARING AN OBJECT WITH OBJECT ENUMERATION RESULTS TO IDENTIFY AN ANOMALY THAT AT LEAST POTENTIALLY INDICATES UNWANTED ACTIVITY 有权
    系统,方法和计算机程序产品,用于将对象与对象输出结果进行比较,以识别出极少可能显示无效活动的异常

    公开(公告)号:US20130247180A1

    公开(公告)日:2013-09-19

    申请号:US11839225

    申请日:2007-08-15

    申请人: Tracy E. Camp

    发明人: Tracy E. Camp

    IPC分类号: G06F21/00

    CPC分类号: G06F21/577 G06F21/565

    摘要: A system, method, and computer program product are provided for comparing an object with object enumeration results to identify at least potentially unwanted activity. In use, a change in a state of an object is identified. Additionally, the object is compared with results of an object enumeration. Further, at least potentially unwanted activity is identified based on the comparison.

    摘要翻译: 提供了一种系统,方法和计算机程序产品,用于将对象与对象枚举结果进行比较,以识别至少潜在的不需要的活动。 在使用中,识别对象的状态的改变。 此外,将对象与对象枚举的结果进行比较。 此外,基于比较来识别至少潜在的不需要的活动。

    IDENTITY ATTESTATION OF A MINOR VIA A PARENT
    4.
    发明申请
    IDENTITY ATTESTATION OF A MINOR VIA A PARENT 审中-公开
    通过家长的身份识别

    公开(公告)号:US20160182508A1

    公开(公告)日:2016-06-23

    申请号:US14580985

    申请日:2014-12-23

    IPC分类号: H04L29/06

    摘要: A technique allows a parentally attested security token to serve as authentication for a minor using identifying attributes of the minor child. The security token may include personally identifiable information about the child, a description of authorized activity as well as specifications of intended use of the security token. The security token may include provisions for authentication to be revoked by a parent or guardian and/or expire after a predetermined time. The security token may be stored inside a trusted execution environment of a portable computing device that may be carried by the minor and presented at physical locations where authentication is required.

    摘要翻译: 一种技术允许父母认证的安全令牌作为未成年人的身份认证的身份验证。 安全令牌可以包括关于孩子的个人身份信息,授权活动的描述以及安全令牌的预期用途的规范。 安全令牌可以包括由父母或监护人撤销认证和/或在预定时间之后到期的规定。 安全令牌可以存储在便携式计算设备的可信执行环境中,该便携式计算设备可由未成年人携带并在需要认证的物理位​​置处呈现。

    System, method, and computer program product for comparing an object with object enumeration results to identify an anomaly that at least potentially indicates unwanted activity
    5.
    发明授权
    System, method, and computer program product for comparing an object with object enumeration results to identify an anomaly that at least potentially indicates unwanted activity 有权
    用于将对象与对象枚举结果进行比较的系统,方法和计算机程序产品,以识别至少潜在地表示不需要的活动的异常

    公开(公告)号:US08613093B2

    公开(公告)日:2013-12-17

    申请号:US11839225

    申请日:2007-08-15

    申请人: Tracy E. Camp

    发明人: Tracy E. Camp

    IPC分类号: G06F12/14 G06F11/00

    CPC分类号: G06F21/577 G06F21/565

    摘要: A system, method, and computer program product are provided for comparing an object with object enumeration results to identify at least potentially unwanted activity. In use, a change in a state of an object is identified. Additionally, the object is compared with results of an object enumeration. Further, at least potentially unwanted activity is identified based on the comparison.

    摘要翻译: 提供了一种系统,方法和计算机程序产品,用于将对象与对象枚举结果进行比较以识别至少潜在的不需要的活动。 在使用中,识别对象的状态的改变。 此外,将对象与对象枚举的结果进行比较。 此外,基于比较来识别至少潜在的不需要的活动。

    METHOD AND SYSTEM TO DETECT MALWARE THAT REMOVES ANTI-VIRUS FILE SYSTEM FILTER DRIVER FROM A DEVICE STACK
    6.
    发明申请
    METHOD AND SYSTEM TO DETECT MALWARE THAT REMOVES ANTI-VIRUS FILE SYSTEM FILTER DRIVER FROM A DEVICE STACK 审中-公开
    检测从设备堆栈中移除病毒文件系统过滤器驱动程序的恶意软件的方法和系统

    公开(公告)号:US20110283358A1

    公开(公告)日:2011-11-17

    申请号:US12781263

    申请日:2010-05-17

    IPC分类号: G06F21/00 G06F11/00

    摘要: A method for detecting removal of a filter driver includes performing an operation on an element of a kernel mode of an operating system, the operation initiated by a user mode entity, obtaining the result of performing the operation, and comparing the result of performing the operation against an expected result of the operation. If the result of performing the operation matches the expected result of the operation, it is determined that a file system filter driver in the kernel mode of the operating system is working correctly. If the result of performing the operation does not match the expected result of the operation, it is determined that a file system filter driver in the kernel mode of the operating system has been compromised by malware.

    摘要翻译: 用于检测去除过滤器驱动器的方法包括对操作系统的内核模式的元素执行操作,由用户模式实体发起的操作,获得执行操作的结果以及执行操作的结果 反对预期的操作结果。 如果执行操作的结果与操作的预期结果相符合,则确定操作系统的内核模式中的文件系统过滤驱动器正常工作。 如果执行操作的结果与操作的预期结果不符,则确定操作系统的内核模式中的文件系统过滤器驱动程序已被恶意软件破坏。