首页> 外国专利> System and method for preventing destruction of digital forensic information by malicious software

System and method for preventing destruction of digital forensic information by malicious software

机译:通过恶意软件防止防止数字法医信息的系统和方法

摘要

Problem to be solved: to provide a method and system for preventing an act by suspicious objects obstructing digital forensic investigation.In the method 300, a suspicious object is identified from a plurality of objects in the computing device 302, and the operation performed by the suspicious object is monitored.The first command by the suspicious object to create and / or modify the digital artifact is intercepted 306 to intercept 308 the second command by the suspect object.The second command then deletes the created / modified digital artifacts or deletes 310 or suspicious objects themselves or blocks 314 of the second command in accordance with the determination of A suspicious object and a digital artifact are stored in a digital repository 316.Diagram
机译:要解决的问题:提供一种方法和系统,用于防止妨碍妨碍数字法医调查的可疑物体的行为。在方法300中,从计算设备302中的多个对象识别可疑对象,并且监视由可疑对象执行的操作。由可疑对象创建和/​​或修改数字伪像的第一命令被截获306通过疑似对象拦截308个第二个命令。然后,第二命令然后根据可疑对象和数字工件删除第二命令的创建/修改的数字伪像或删除310或可疑对象本身或块314存储在数字存储库316.diagram中

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号