发明名称 Computer forensic system
摘要 A method for processing, analyzing live and off-line physical memory in order to determine the presence, and initiate the removal, of malware from the system. The internal structures within the host operating system, the drivers, and the user-space executables can be utilized to self-verify the integrity of the processes, their related structures, and the binary execution paths residing on the system. Additionally, these same characteristics are employed for use in comparison with other baseline malicious and benign datasets as well as datasets from live systems to automatically identify malware and remove it from a targeted computer system.
申请公布号 US8584241(B1) 申请公布日期 2013.11.12
申请号 US20100854479 申请日期 2010.08.11
申请人 JENKS JOSHUA C.;TERAN EVAN M.;STOVER SAMUEL F.;LOCKHEED MARTIN CORPORATION 发明人 JENKS JOSHUA C.;TERAN EVAN M.;STOVER SAMUEL F.
分类号 G06F11/00 主分类号 G06F11/00
代理机构 代理人
主权项
地址