MALWARE DISCOVERY METHOD AND SYSTEM

PROBLEM TO BE SOLVED: To provide a method for identifying potentially harmful malware.SOLUTION: The method comprises the steps of: a) identifying an executable that is about to run; b) providing a monitoring agent that monitors all threads that are descendent of a thread initiated by the process of...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Hauptverfasser: AMIT KLEIN, AVNER GIDEONI, GAL FRISHMAN, YARON DYCIAN
Format: Patent
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:PROBLEM TO BE SOLVED: To provide a method for identifying potentially harmful malware.SOLUTION: The method comprises the steps of: a) identifying an executable that is about to run; b) providing a monitoring agent that monitors all threads that are descendent of a thread initiated by the process of the executable; and c) configuring the monitoring agent to conclude that a high probability of malware presence exists, if one of the descendent threads reaches a target process in which suspicious patches are created.