×

System and method for capturing kernel-resident information

  • US 7,302,613 B2
  • Filed: 11/12/2003
  • Issued: 11/27/2007
  • Est. Priority Date: 11/12/2003
  • Status: Expired due to Fees
First Claim
Patent Images

1. In a computer system having an operating environment including user mode modules having a first level of protection and kernel mode modules having a second level of protection, a method for consistently collecting information associated with the execution of a user mode module, the method comprising:

  • transmitting, by a requestor application, a request to collect kernel mode module information, wherein the request to collect kernel mode module information includes an identification of one or more executing process threads from which kernel mode information will be collected;

    obtaining, by a kernel mode module, corresponding to a driver application external to the operating system, the request to collect kernel mode module information;

    capturing, by the kernel mode module, information corresponding to each thread identified in the request to collect kernel mode module information;

    transmitting, by the kernel mode module, a result of the capturing of the information corresponding to each thread identified in the request to collect kernel mode module information; and

    receiving, by the requestor application, the result of the capturing of the information corresponding to each thread identified in the request to collect kernel mode module information.

View all claims
  • 2 Assignments
Timeline View
Assignment View
    ×
    ×