Invention Grant
US08621605B2 Method for reducing the time to diagnose the cause of unexpected changes to system files 失效
减少诊断系统文件意外更改原因的时间的方法

Method for reducing the time to diagnose the cause of unexpected changes to system files
Abstract:
A method for monitoring access to a file within a file system includes steps or acts of: monitoring a plurality of requests for access to files; intercepting the requests; and analyzing metadata located in the file. If the metadata includes a directive entry, the method includes these additional steps: identifying information about any application requesting access to the file, including a sequence of function calls that preceded the file access request; and logging the information to generate an action trail of the application. A mechanism for monitoring file access includes the following: a file system configured for monitoring accesses to any file residing within it; an access control mechanism which can execute pre-defined actions when an unauthorized file access occurs; and a tool to specify the list of files to be monitored.
Information query
Patent Agency Ranking
0/0