发明名称 SYSTEM, METHOD AND PROGRAM PRODUCT FOR DETECTING PRESENCE OF MALICIOUS SOFTWARE RUNNING ON A COMPUTER SYSTEM
摘要 <p>A system, method and program product for detecting presence of malicious software running on a computer system. The method includes locally querying the system to generate a local invento-ry of tasks and network services running on the system for detecting presence of malicious software running on the system and remotely querying the system from a remote system via a network to generate a remote inventory of tasks and network services running on the system for detecting presence of malicious software running on the system, where the local inventory enumerates ports in use on the system and where the remote inventory enumerates ports in use on the system. Fur-ther, the method includes collecting the local inventory and the remote inventory and comparing the local inventory with the remote inventory to identify any discrepancies between the local and the remote invento-ries for detecting presence of malicious software running on the system.</p>
申请公布号 CA2719495(A1) 申请公布日期 2010.05.06
申请号 CA20092719495 申请日期 2009.10.14
申请人 INTERNATIONAL BUSINESS MACHINES CORPORATION 发明人 OLLMANN, GUNTER DANIEL
分类号 H04L29/06;G06F21/00 主分类号 H04L29/06
代理机构 代理人
主权项
地址