发明名称 SYSTEM AND METHOD FOR STRATEGIC ANTI-MALWARE MONITORING
摘要 The system and method described herein may leverage active network scanning and passive network monitoring to provide strategic anti-malware monitoring in a network. In particular, the system and method described herein may remotely connect to managed hosts in a network to compute hashes or other signatures associated with processes running thereon and suspicious files hosted thereon, wherein the hashes may communicated to a cloud database that aggregates all known virus or malware signatures that various anti-virus vendors have catalogued to detect malware infections without requiring the hosts to have a local or resident anti-virus agent. Furthermore, running processes and file system activity may be monitored in the network to further detect malware infections. Additionally, the network scanning and network monitoring may be used to detect hosts that may potentially be participating in an active botnet or hosting botnet content and audit anti-virus strategies deployed in the network.
申请公布号 US2014013434(A1) 申请公布日期 2014.01.09
申请号 US201213692200 申请日期 2012.12.03
申请人 TENABLE NETWORK SECURITY, INC. 发明人 RANUM MARCUS J.;GULA RON
分类号 H04L29/06 主分类号 H04L29/06
代理机构 代理人
主权项
地址
您可能感兴趣的专利