发明名称 Malware management through kernel detection
摘要 A system and method for managing pestware on a protected computer is described. The method in one variation includes starting a boot sequence that includes a period when boot drivers are initialized, initiating a kernel-level monitor during the period when boot drivers are initialized, monitoring events with the kernel-level monitor during the boot sequence and managing pestware-related events with the kernel-level monitor before a period in the boot sequence when native applications are capable of running. In variations, a pestware management engine is initialized after an operating system of the protected computer is initialized and the pestware management system both receives an event log of the monitored events and compiles the set of behavior rules utilized by kernel-level monitor.
申请公布号 US8190868(B2) 申请公布日期 2012.05.29
申请号 US20060462827 申请日期 2006.08.07
申请人 SCHNEIDER JEROME L.;WEBROOT INC. 发明人 SCHNEIDER JEROME L.
分类号 G06F21/00 主分类号 G06F21/00
代理机构 代理人
主权项
地址