发明名称 仮想パーティションを監視するためのシステム、装置、プログラムおよび方法
摘要 A method is provided in one example embodiment that includes receiving in an external handler an event notification associated with an event in a virtual partition. A thread in the process in the virtual partition that caused the event can be parked. Other threads and processes may be allowed to resume while a security handler evaluates the event for potential threats. A helper agent within the virtual partition may be instructed to execute a task, such as collecting and assembling event context within the virtual partition, and results based on the task can be returned to the external handler. A policy action can be taken based on the results returned by the helper agent, which may include, for example, instructing the helper agent to terminate the process that caused the event.
申请公布号 JP5861228(B2) 申请公布日期 2016.02.16
申请号 JP20140514848 申请日期 2012.06.07
申请人 マカフィー, インコーポレイテッド 发明人 ダルシェール、 グレゴリー ダブリュー.;エドワーズ、ジョナサン エル.
分类号 G06F21/53;G06F9/46 主分类号 G06F21/53
代理机构 代理人
主权项
地址