FIELD: information technology.
SUBSTANCE: invention relates to antivirus methods and, more specifically, to treatment of computers from malicious software which inhibit treatment. The system, method and machine-readable medium for removing malicious software from a computer, with several copies of the same activated malicious software, where several copies control presence of others, include (a) detection of presence malicious software on a computer; (b) blocking any actions, which allow one activated copy of malicious software to activate another copy; (c) removal from read-only memory of a file containing executable code of the malicious software; and (d) rebooting the computer. Actions include prevention of recording on read-only memory, prevention of recording in the registry and/or blocking activation of new processes. Blocking uses a driver, loaded in the kernel area. Signature identification can be used for detecting malicious software.
EFFECT: removal of malicious software which inhibit treatment.
12 cl, 11 dwg
Title | Year | Author | Number |
---|---|---|---|
METHOD FOR DELAYED ELIMINATION OF MALICIOUS CODE | 2014 |
|
RU2583711C2 |
METHOD OF DETECTING UNKNOWN PROGRAMS BY LOAD PROCESS EMULATION | 2011 |
|
RU2472215C1 |
SYSTEM AND METHOD OF PROTECTING COMPUTER APPLICATIONS | 2011 |
|
RU2460133C1 |
METHOD OF INCREASING RELIABILITY OF DETECTING MALICIOUS SOFTWARE | 2012 |
|
RU2485577C1 |
SYSTEM AND METHOD FOR IMPROVING QUALITY OF DETECTING MALICIOUS OBJECTS USING RULES AND PRIORITIES | 2012 |
|
RU2514140C1 |
SYSTEM AND METHOD TO PROTECT COMPUTER SYSTEM AGAINST ACTIVITY OF HARMFUL OBJECTS | 2011 |
|
RU2468427C1 |
METHOD OF CREATING ANTIVIRUS RECORD WHEN DETECTING MALICIOUS CODE IN RANDOM-ACCESS MEMORY | 2015 |
|
RU2592383C1 |
SYSTEM AND METHOD FOR EFFICIENT TREATMENT OF COMPUTER FROM MALWARE AND EFFECTS OF ITS WORK | 2012 |
|
RU2486588C1 |
SYSTEM AND METHOD FOR PERFORMING ANTI-VIRUS SCAN OF FILE ON VIRTUAL MACHINE | 2016 |
|
RU2628921C1 |
METHOD FOR AUTOMATIC GENERATION OF HEURISTIC ALGORITHMS FOR SEARCHING FOR MALICIOUS OBJECTS | 2012 |
|
RU2510530C1 |
Authors
Dates
2009-07-27—Published
2007-10-31—Filed