发明名称 Technique for scanning stealthed, locked, and encrypted files
摘要 A copy of the raw data on physical disk of an inaccessible source file is automatically generated in an accessible target file. When accessed, the copy of the raw data of the inaccessible source file in the accessible target file can be read allowing a user or application to evaluate the data of the accessible target file, and thus indirectly the raw data of the inaccessible source file. In some embodiments, the copy of the raw data is evaluated for malicious code, allowing a user or application to take protective actions, such as deleting the inaccessible source file. Where the raw data of the inaccessible source file is encrypted, the copy of the raw data is automatically decrypted by the operating system when read yielding unencrypted data. Where the raw data of the inaccessible source file is compressed, the copy of the raw data is automatically decompressed by the operating system when read yielding uncompressed data.
申请公布号 US7634521(B1) 申请公布日期 2009.12.15
申请号 US20060413455 申请日期 2006.04.27
申请人 SYMANTEC CORPORATION 发明人 SPERTUS MICHAEL PAUL;NAFTEL TIMOTHY MICHAEL
分类号 G06F17/00;G06F17/30 主分类号 G06F17/00
代理机构 代理人
主权项
地址