首页> 外国专利> TECHNOLOGIES FOR HARDWARE ASSISTED NATIVE MALWARE DETECTION

TECHNOLOGIES FOR HARDWARE ASSISTED NATIVE MALWARE DETECTION

机译:硬件辅助本地恶意软件检测技术

摘要

Technologies for hardware assisted native malware detection include a computing device. The computing device includes one or more processors with hook logic to monitor for execution of branch instructions of an application, compare the monitored branch instructions to filter criteria, and determine whether a monitored branch instruction satisfies the filter criteria. Additionally, the computing device includes a malware detector to provide the filter criteria to the hook logic, provide an address of a callback function to the hook logic to be executed in response to a determination that a monitored branch instruction satisfies the filter criteria, and analyze, in response to execution of the callback function, the monitored branch instruction to determine whether the monitored branch instruction is indicative of malware. Other embodiments are also described and claimed.
机译:用于硬件辅助的本地恶意软件检测的技术包括计算设备。该计算设备包括具有钩子逻辑的一个或多个处理器,以监视应用程序的分支指令的执行,将所监视的分支指令与过滤条件进行比较,以及确定所监视的分支指令是否满足过滤条件。另外,计算设备包括恶意软件检测器,以将过滤器标准提供给钩子逻辑,将回调函数的地址提供给钩子逻辑以响应于确定监视的分支指令满足过滤器标准而执行,并进行分析。响应于回调函数的执行,受监视的分支指令以确定受监视的分支指令是否指示恶意软件。还描述了其他实施例并要求保护。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号