Invention Grant
- Patent Title: System and method for virtual partition monitoring
- Patent Title (中): 用于虚拟分区监控的系统和方法
-
Application No.: US13155572Application Date: 2011-06-08
-
Publication No.: US09298910B2Publication Date: 2016-03-29
- Inventor: Gregory W. Dalcher , Jonathan L. Edwards
- Applicant: Gregory W. Dalcher , Jonathan L. Edwards
- Applicant Address: US CA Santa Clara
- Assignee: McAfee, Inc.
- Current Assignee: McAfee, Inc.
- Current Assignee Address: US CA Santa Clara
- Agency: Patent Capital Group
- Main IPC: G06F21/53
- IPC: G06F21/53 ; G06F21/55 ; G06F21/56 ; G06F9/455

Abstract:
A method is provided in one example embodiment that includes receiving in an external handler an event notification associated with an event in a virtual partition. A thread in the process in the virtual partition that caused the event can be parked. Other threads and processes may be allowed to resume while a security handler evaluates the event for potential threats. A helper agent within the virtual partition may be instructed to execute a task, such as collecting and assembling event context within the virtual partition, and results based on the task can be returned to the external handler. A policy action can be taken based on the results returned by the helper agent, which may include, for example, instructing the helper agent to terminate the process that caused the event.
Public/Granted literature
- US20120317570A1 SYSTEM AND METHOD FOR VIRTUAL PARTITION MONITORING Public/Granted day:2012-12-13
Information query