Data processing: database and file management or data structures – Database and file access
Reexamination Certificate
2007-02-16
2010-12-28
LeRoux, Etienne P (Department: 2161)
Data processing: database and file management or data structures
Database and file access
C726S024000
Reexamination Certificate
active
07860850
ABSTRACT:
Scanning engine (i.e. program(s) or application(s))310sends request315to direct file system access engine (i.e. program(s) or application(s))360. Direct file system access engine360receives request315and passes request315to file system(s)350as request325. No filter program(s)340receive program control as request325bypasses any filter program(s)340. The direct file system access engine360receives unaltered information from file system(s)350. Utilising Direct File Access (DFA) allows bypass of user mode hooking-type malwares, kernel, and file system filter programs to obtain access to or communicate with the real underlying file system(s). This provides a ‘clean’ view of the file system(s) in situations where user/kernel components are compromised or rootkit file system filter programs are installed.
REFERENCES:
patent: 7216367 (2007-05-01), Szor
patent: 2004/0010703 (2004-01-01), Kouznetsov et al.
patent: 2004/0103417 (2004-05-01), Voellm et al.
patent: 2006/0179484 (2006-08-01), Scrimsher et al.
patent: 2006/0294592 (2006-12-01), Polyakov et al.
patent: 2007/0016914 (2007-01-01), Yeap
patent: 2007/0079178 (2007-04-01), Gassoway
patent: 2007/0180529 (2007-08-01), Costea et al.
Kasslin et al. “Hide'n Seek Revisited-Full Stealth is back” Virus Bulletin Conference Oct. 2005 (hereafter Kisslin).
Web page, Wikipedia Encyclopedia, en.wikipedia.org/wiki/Rootkit (5 pgs.), Feb. 3, 2006.
Web page, SearchWindowsSecurity.com, searchsecurity.techtarget.com/tip/1,289483,sid14—gci1103744,00.html (4pgs.) May 6, 2005.
Web page, SearchSecurity.com, searchwindowssecurity.techtarget.com/originalContent/0,289142,sid45—gci10864 (5 pgs.) Jul. 6, 2005.
Holland & Hart LLP
LeRoux Etienne P
Nguyen Cindy
Symantec Corporation
LandOfFree
Scanning files using direct file system access does not yet have a rating. At this time, there are no reviews or comments for this patent.
If you have personal experience with Scanning files using direct file system access, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Scanning files using direct file system access will most certainly appreciate the feedback.
Profile ID: LFUS-PAI-O-4238471