SCAN 5-2 Spécifications Page 131

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 432
  • Table des matières
  • DEPANNAGE
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 130
Keeping Protection Up-to-Date
4-7
Behavior Monitoring Components
Behavior Monitoring Driver
This kernel mode driver monitors system events and passes them to Behavior
Monitoring Core Service for policy enforcement.
Behavior Monitoring Core Service
This user mode service has the following functions:
Provides rootkit detection
Regulates access to external devices
Protects files, registry keys, and services
Behavior Monitoring Configuration Pattern
The Behavior Monitoring Driver uses this pattern to identify normal system events and
exclude them from policy enforcement.
Digital Signature Pattern
This pattern contains a list of valid digital signatures that are used by the Behavior
Monitoring Core Service to determine whether a program responsible for a system
event is safe.
Policy Enforcement Pattern
The Behavior Monitoring Core Service checks system events against the policies in this
pattern.
Vue de la page 130
1 2 ... 126 127 128 129 130 131 132 133 134 135 136 ... 431 432

Commentaires sur ces manuels

Pas de commentaire