发明名称 Distributed Sensor for Detecting Malicious Software
摘要 Processor(s) for detecting malicious software. A hardware virtual machine monitor (HVMM) operates under a host OS. Container(s) initialized with network application template(s)operate under a guest OS VM. A detection module operates under the guest OS VM includes a trigger detection module, a logging module and a container command module. The trigger detection module monitors activity on container(s) for a trigger event. The logging module writes activity report(s) in response to trigger event(s). The container command module issues command(s) in response to trigger event(s). The command(s) include a container start, stop and revert commands. A virtual machine control console operates under the host OS and starts/stops the HVMM. A container control module operates under the guest OSVM and controls container(s) in response to the command(s). The server communication module sends activity report(s) to a central collection network appliance that maintains a repository of activities for infected devices.
申请公布号 US2010122343(A1) 申请公布日期 2010.05.13
申请号 US20090558841 申请日期 2009.09.14
申请人 发明人 GHOSH ANUP;HUANG YIH;WANG JIANG;STAVROU ANGELOS
分类号 G06F11/00 主分类号 G06F11/00
代理机构 代理人
主权项
地址