首页> 外国专利> METHOD FOR DETECTING MALICIOUS SOFTWARE FOR COMPUTERS ARCHIVED ACCORDING TO UNKNOWN ALGORITHM

METHOD FOR DETECTING MALICIOUS SOFTWARE FOR COMPUTERS ARCHIVED ACCORDING TO UNKNOWN ALGORITHM

机译:一种根据未知算法检测计算机归档恶意软件的方法

摘要

FIELD: information technology.;SUBSTANCE: method for detecting the malicious software for computers archived according to unknown algorithm, contains the following steps: I) analyze the algorithm by which the files are archived; II) analyze the archive for the presence of the malicious software for the computer, if the archivation algorithm is known; III) perform the archive assignment to the list of files, that require constant monitoring of its activity in case of detection the unknown archivation algorithm in step I; IV) suspend the actions and processes, initiated by the archive, as soon as the attempt of actions is identified as the potentially inherent to the malicious software for computer; V) make the removal and analysis of the archive memory dump, which actions and processes are suspended, the reconstruction of the executed files from the archive memory dump; VI) the signature search according to the executed files reconstructed from the archive is performed after reconstruction.;EFFECT: efficiency increase of the computer protection from the impact of malicious software for the computers.;1 cl
机译:领域:信息技术;实体:一种用于根据未知算法检测存档计算机的恶意软件的方法,包括以下步骤:I)分析存档文件的算法; II)如果已知存档算法,则分析存档中是否存在计算机恶意软件; III)对文件列表执行档案分配,如果在步骤I中检测到未知的存档算法,则需要对其活动进行持续监控; IV)一旦尝试采取行动是计算机恶意软件固有的潜在潜能,就暂停由档案馆发起的行动和过程; V)对归档存储器转储进行删除和分析,暂停哪些动作和过程,从归档存储器转储中重建已执行的文件; VI)根据从存档中重建的执行文件进行签名搜索,重建后进行;效果:提高计算机保护效率,免受恶意软件对计算机的影响。1cl

著录项

  • 公开/公告号RU2624540C2

    专利类型

  • 公开/公告日2017-07-04

    原文格式PDF

  • 申请/专利号RU20130152194

  • 发明设计人

    申请日2013-11-25

  • 分类号G06F21/56;

  • 国家 RU

  • 入库时间 2022-08-21 13:23:29

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号