Invention Grant
- Patent Title: Detecting malware-related activity on a computer
-
Application No.: US14230282Application Date: 2014-03-31
-
Publication No.: US09723014B2Publication Date: 2017-08-01
- Inventor: Amit Klein
- Applicant: International Business Machines Corporation
- Applicant Address: US NY Armonk
- Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Current Assignee: INTERNATIONAL BUSINESS MACHINES CORPORATION
- Current Assignee Address: US NY Armonk
- Agency: AlphaPatent Associates Ltd.
- Agent Daniel J. Swirsky
- Main IPC: H04L29/06
- IPC: H04L29/06 ; G06F21/56

Abstract:
Detecting malware-related activity on a computer by detecting activity associated with the creation of a data object, where the activity is performed by a process, where the process is an instance of a computer software application that resides in a computer memory and that is executed by a computer, and where the data object is configured to persist after termination of the process, determining a string that identifies the data object, searching for a portion of the string that identifies the data object within any areas of the computer memory storing static portions of the computer software application, and performing a computer-security-related remediation action responsive to determining that the portion of the string that identifies the data object is absent from the searched areas of the computer memory.
Public/Granted literature
- US20150278521A1 DETECTING MALWARE-RELATED ACTIVITY ON A COMPUTER Public/Granted day:2015-10-01
Information query