发明名称 Method and system for discrete stateful behavioral analysis
摘要 A method for analyzing a computing system includes the steps of at a first moment in time, scanning the resources of the computing system for indications of malware, at a second moment in time scanning the resources of the computing system for indications of malware and determining the system executable objects loaded on the computing system, determining malware system changes, identifying a relationship between the malware system changes and the system executable objects loaded on the computing system, and identifying as suspected malware the system executable objects loaded on the computing system which have a relationship with the malware system changes. The malware system changes include differences between the results of scanning the resources of the computing system for indications of malware at the second and first moment of time.
申请公布号 US8307434(B2) 申请公布日期 2012.11.06
申请号 US20100695024 申请日期 2010.01.27
申请人 SALLAM AHMED SAID;MCAFEE, INC. 发明人 SALLAM AHMED SAID
分类号 G06F11/00 主分类号 G06F11/00
代理机构 代理人
主权项
地址