首页> 外国专利> SYSTEM, APPARATUS AND METHOD FOR USING MALWARE ANALYSIS RESULTS TO DRIVE ADAPTIVE INSTRUMENTATION OF VIRTUAL MACHINES TO IMPROVE EXPLOIT DETECTION

SYSTEM, APPARATUS AND METHOD FOR USING MALWARE ANALYSIS RESULTS TO DRIVE ADAPTIVE INSTRUMENTATION OF VIRTUAL MACHINES TO IMPROVE EXPLOIT DETECTION

机译:利用恶意软件分析结果来驱动虚拟机的自适应仪器以改善开发检测的系统,装置和方法

摘要

According to one embodiment, an electronic device comprises a memory to store information and a processor. The processor is adapted to receive information associated with content such as network traffic, to process the stored information and to conduct operations on the content. These operations may comprise determining, by a virtual machine processed by the processor, an occurrence of an event during malware analysis of an object associated with the content, and dynamically altering a virtual machine instrumentation of the virtual machine based on information associated with the event.
机译:根据一个实施例,一种电子设备包括用于存储信息的存储器和处理器。处理器适于接收与诸如网络流量之类的与内容相关联的信息,以处理所存储的信息并对该内容进行操作。这些操作可以包括:由处理器处理的虚拟机确定在与内容相关联的对象的恶意软件分析期间事件的发生;以及基于与事件相关联的信息动态地改变虚拟机的虚拟机检测。

著录项

  • 公开/公告号WO2015047960A1

    专利类型

  • 公开/公告日2015-04-02

    原文格式PDF

  • 申请/专利权人 FIREEYE INC.;

    申请/专利号WO2014US56834

  • 发明设计人 ISMAEL OSMAN ABDOUL;

    申请日2014-09-22

  • 分类号G06F21/56;H04L29/06;

  • 国家 WO

  • 入库时间 2022-08-21 15:07:25

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号