发明名称 System and Method For Detecting Unknown Malicious Code By Analyzing Kernel Based System Actions
摘要 There is provided a system and method for detecting unknown malicious code by analyzing kernel based system actions. More particularly, the system and method provides an advantage of actively countering unknown malicious code or viruses by monitoring kernel based system events in real time, organizing action data based on the collected event data, determining whether the action data corresponds to predetermined malicious actions, backtracking a subject of a malicious action when the action data is determined to correspond to the malicious action, and processing the malicious action.
申请公布号 US2010169973(A1) 申请公布日期 2010.07.01
申请号 US20090571825 申请日期 2009.10.01
申请人 发明人 KIM KI HONG;JUNG GA RAM;JEONG HYUN CHEOL;IM CHAE TAE;JI SEUNG GOO;NOH SANG KYUN;OH JOO HYUNG
分类号 G06F11/00 主分类号 G06F11/00
代理机构 代理人
主权项
地址