发明名称 Method and system for detecting computer malwares by scan of process memory after process initialization
摘要 A method, system, and computer program product for detecting a malware that provides the capability to detect malwares included in compressed files or which require emulation. A method of detecting a malware comprises the steps of scanning a process that has been loaded for execution for a malware, allowing the process to execute, if no malware is found, interrupting execution of the process, and scanning the process for a malware.
申请公布号 US2003115479(A1) 申请公布日期 2003.06.19
申请号 US20010014874 申请日期 2001.12.14
申请人 EDWARDS JONATHAN;TURNER SHAWNA;SPURLOCK JOEL 发明人 EDWARDS JONATHAN;TURNER SHAWNA;SPURLOCK JOEL
分类号 G06F1/00;G06F21/00;(IPC1-7):G06F11/30 主分类号 G06F1/00
代理机构 代理人
主权项
地址