Method and apparatus for detecting a rootkit

Patent №

US 8,397,295

Granted

2013-03-12

Filed 2007

Owner

SYMANTEC CORPORATION

Lab

AI components

1

planning

Assignment

Recorded

Dataset

AIPD

2023_r1 edition

Application

12004205

A method and apparatus for detecting a rootkit is described. In one embodiment, a method for detecting a rootkit comprises analyzing file system information associated with a plurality of files that form a volume, wherein a first portion of the file system information comprises metadata information for a master file table and a second portion comprises at least one master file table record and identifying an inconsistency within the file system information where the inconsistency indicates a modification to the file system information by a rootkit.

PlanningG06F 21/577G06F 21/562

AI classification

Planning0.74
Knowledge representation0.25
AI hardware0.07
Natural language0.01
Evolutionary computation0.00
Machine learning0.00
Vision0.00
Speech0.00

Ownership

SYMANTEC CORPORATION

assignment · 203280803

Assignors

NAFTEL, TIMOTHY MICHAEL

On an employer assignment, the assignors are typically the inventors.

© 2026 NYSGPT2525 LLC