发明名称 SYSTEM AND METHOD FOR PROACTIVE DETECTION OF MALWARE DEVICE DRIVERS VIA KERNEL FORENSIC BEHAVIORAL MONITORING AND A BACK-END REPUTATION SYSTEM
摘要 A method for detecting malware device drivers includes the steps of identifying one or more device drivers loaded on an electronic device, analyzing the device drivers to determine suspicious device drivers, accessing information about the suspicious device drivers in a reputation system, and evaluating whether the suspicious device driver include malware. The suspicious device drivers are not recognized as not including malware. The reputation system is configured to store information about suspicious device drivers. The evaluation is based upon historical data regarding the suspicious device driver.
申请公布号 US2012023583(A1) 申请公布日期 2012.01.26
申请号 US20100840032 申请日期 2010.07.20
申请人 SALLAM AHMED SAID;MCAFEE, INC. 发明人 SALLAM AHMED SAID
分类号 G06F21/00;G06F12/14 主分类号 G06F21/00
代理机构 代理人
主权项
地址