GENERIC PRIVILEGE ESCALATION PREVENTION
    1.
    发明申请
    GENERIC PRIVILEGE ESCALATION PREVENTION 有权
    一般特权防雷

    公开(公告)号:US20140351930A1

    公开(公告)日:2014-11-27

    申请号:US13977014

    申请日:2013-03-15

    IPC分类号: H04L29/06

    摘要: An apparatus, method, computer readable storage medium are provided in one or more examples and comprise accessing an application, identifying an access token of the application, determining if the access token is a system token, and responsive to the access token failing to be a system token, enabling a runtime module.

    摘要翻译: 在一个或多个示例中提供了一种装置,方法,计算机可读存储介质,包括访问应用程序,识别应用程序的访问令牌,确定访问令牌是否是系统令牌,以及响应于访问令牌不成为 系统令牌,启用运行时模块。

    SERVER-ASSISTED ANTI-MALWARE CLIENT
    2.
    发明申请
    SERVER-ASSISTED ANTI-MALWARE CLIENT 有权
    服务器辅助的反恶意软件客户端

    公开(公告)号:US20140283065A1

    公开(公告)日:2014-09-18

    申请号:US13976988

    申请日:2013-03-15

    IPC分类号: H04L29/06

    摘要: A host-based antimalware client can interface with a server-based antimalware support server. A file is identified at a host device. It is determined whether local reputation data for the file is available at the host device for the file. A query is sent to an antimalware support system relating to the file. Particular reputation data is received from the antimalware support system corresponding to the query. It is determined whether to allow the file to be loaded on the host device based at least in part on the particular reputation data.

    摘要翻译: 基于主机的反恶意软件客户端可以与基于服务器的反恶意软件支持服务器进行接口。 在主机设备上识别文件。 确定该文件的主机设备的文件的本地信誉数据是否可用。 将查询发送到与文件相关的反恶意软件支持系统。 从与查询对应的反恶意软件支持系统接收到特殊的信誉数据。 至少部分地基于特定的信誉数据来确定是否允许在主机设备上加载该文件。

    REMOTE MALWARE REMEDIATION
    3.
    发明申请
    REMOTE MALWARE REMEDIATION 有权
    远程恶意修复

    公开(公告)号:US20140289853A1

    公开(公告)日:2014-09-25

    申请号:US13977003

    申请日:2013-03-15

    IPC分类号: H04L29/06

    摘要: An opportunity to assist with remediation of a file at a remote particular host device is identified. One or more remediation techniques are identified that can be applied to assist with remediation of the file at the particular host device. In one aspect, one or more remediation scripts are identified from a plurality of remediation scripts for remediation of the file and provided to the particular host device for execution on the particular host device. In another aspect, a remediation tool is identified and launched on a computing device remote from the particular host device with operations of the remediation tool applied to resources of the particular host device. In another aspect, at least a portion of the remediation techniques are remotely initiated to be performed locally at the particular host device.

    摘要翻译: 识别协助在远程特定主机设备处修复文件的机会。 识别可以应用于帮助在特定主机设备处修复文件的一种或多种修复技术。 在一个方面,从多个修复脚本中识别一个或多个修复脚本,用于修复该文件并将其提供给特定主机设备以在特定主机设备上执行。 在另一方面,在远离特定主机设备的计算设备上识别并启动修复工具,其中修复工具的操作被应用于特定主机设备的资源。 在另一方面,至少一部分修复技术被远程地启动以在特定主机设备本地执行。

    SERVER-ASSISTED ANTI-MALWARE CLIENT
    4.
    发明申请
    SERVER-ASSISTED ANTI-MALWARE CLIENT 有权
    服务器辅助的反恶意软件客户端

    公开(公告)号:US20140283066A1

    公开(公告)日:2014-09-18

    申请号:US13976994

    申请日:2013-03-15

    IPC分类号: G06F21/56

    CPC分类号: G06F21/56 G06F21/51

    摘要: An antimalware support system is provided to support one or more host-based antimalware clients. A query is received from a particular host device that identifies a file detected by an antimalware tool local to the particular host device. Reputation data is determined for the file, and a response to the query is sent to the particular host device. The query response includes the reputation data determined for the file.

    摘要翻译: 提供反恶意软件支持系统以支持一个或多个基于主机的反恶意软件客户端。 从特定主机设备接收到识别由特定主机设备本地的反恶意软件工具检测到的文件的查询。 为文件确定信誉数据,并将对查询的响应发送到特定的主机设备。 查询响应包括为文件确定的信誉数据。