首页> 外国专利> SYSTEMS AND METHODS FOR COUNTERING REMOVAL OF DIGITAL FORENSICS INFORMATION BY MALICIOUS SOFTWARE

SYSTEMS AND METHODS FOR COUNTERING REMOVAL OF DIGITAL FORENSICS INFORMATION BY MALICIOUS SOFTWARE

机译:通过恶意软件抵消Digital Forensics信息的系统和方法

摘要

Disclosed herein are systems and methods for preventing anti-forensics actions. In one example, a method may identify a suspicious object from a plurality of objects on a computing device and monitor actions performed by the suspicious object. The method may intercept a first command by the suspicious object to create and/or modify a digital artifact on the computing device and subsequent to intercepting the first command, intercept a second command by the suspicious object to delete at least one of the suspicious object and the digital artifact. In response to intercepting both the first command to create and/or modify the digital artifact and the second command to delete at least one of the suspicious object and the digital artifact, the method may block the second command, and may store the suspicious object and the digital artifact in a digital repository.
机译:本文公开了用于防止抗真菌动作的系统和方法。在一个示例中,方法可以从计算设备上的多个对象识别可疑对象,并监视由可疑对象执行的操作。该方法可以通过可疑对象拦截第一命令以在计算设备上创建和/或修改数字伪像,并且在拦截第一个命令之后,拦截可疑对象的第二命令删除一个可疑对象中的至少一个数字伪影。响应于拦截第一个命令来创建和/或修改数字伪影和第二个命令来删除至少一个可疑对象和数字工件,该方法可以阻止第二个命令,并且可以存储可疑对象和数字存储库中的数字伪影。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号