Invention Grant
- Patent Title: Using trap cache segments to detect malicious processes
-
Application No.: US16129616Application Date: 2018-09-12
-
Publication No.: US11080397B2Publication Date: 2021-08-03
- Inventor: Brian A. Rinaldi , Clint A. Hardy , Lokesh M. Gupta , Kevin J. Ash
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agency: Konrad, Raynes, Davda and Victor LLP
- Agent David W. Victor; Alan S. Raynes
- Main IPC: G06F21/56
- IPC: G06F21/56 ; G06F12/14

Abstract:
Provided are a computer program product, system, and method for using trap cache segments to detect malicious processes. A trap cache segment to the cache for data in the storage and indicated as a trap cache segment. Cache segments are added to the cache having data from the storage that are not indicated as trap cache segments. A memory function call from a process executing in the computer system reads data from a region of a memory device to output the read data to a buffer of the memory device. A determination is made as to whether the region of the memory device includes the trap cache segment. The memory function call is blocked and the process is treated as a potentially malicious process in response to determining that the region includes the trap cache segment.
Public/Granted literature
- US20200082076A1 USING TRAP CACHE SEGMENTS TO DETECT MALICIOUS PROCESSES Public/Granted day:2020-03-12
Information query