Skip to main content
U.S. Department of Energy
Office of Scientific and Technical Information

Rootkit detection system

Patent ·
OSTI ID:1840295
A system and method (referred to as the system) detect infectious code. The system injects a repetitive software code that causes malware in a monitored device to render a detectable direct current power consumption profile. A guide wave generator generates a guide wave signal that establishes an observational window that is applied to data that represent a direct current source power consumption of the monitored device. An extraction device extracts a portion of the data that represent the direct current source power consumption of the monitored device. A deviation engine identifies the malware on the monitored device without processing data associated with a prior identification of the malware or identifying a source of the malware or identifying a location of the malware on the monitored device.
Research Organization:
Oak Ridge National Laboratory (ORNL), Oak Ridge, TN (United States)
Sponsoring Organization:
USDOE
DOE Contract Number:
AC05-00OR22725;
Assignee:
UT-Battelle, LLC (Oak Ridge, TN)
Patent Number(s):
11,074,345
Application Number:
16/427,109
OSTI ID:
1840295
Country of Publication:
United States
Language:
English

References (1)

Phase-Space Detection of Cyber Events conference April 2015

Similar Records

Related Subjects