首页> 外国专利> Method and system for scanning and cleaning known and unknown computer viruses, recording medium and transmission medium therefor

Method and system for scanning and cleaning known and unknown computer viruses, recording medium and transmission medium therefor

机译:扫描和清除已知和未知计算机病毒的方法和系统,其记录介质和传输介质

摘要

A method, system and mediums for scanning and cleaning computer viruses. Said method comprises the steps of: simulating in a computer a virtual computer circumstance that the computer viruses reside; providing a plurality of infected objects or baits to be infected by computer viruses for inducing virus infection; loading a target object to be scanned into said simulated virtual computer circumstance; activating the target object to be scanned in said simulated virtual computer circumstance to induce the viruses possibly attached on said target object to infect the plurality of objects to be infected and generating standard samples which have been infected; comparing the plurality of objects after processing in the activating step with the plurality of objects to be infected originally provided, determining whether there is any change or not, if yes, the target object to be scanned contains virus, otherwise the target object to be scanned is free of virus. Said method further comprises the steps of: analyzing and learning from the viruses by analyzing the generated standard samples and extracting information and knowledge on the viruses when it is determined that said target object to be scanned contains a virus; and cleaning viruses from the infected target object by removing the virus' s body and modifying key information which has been changed by said virus on the basis of said information and knowledge on the viruses and on the basis of the modification that viruses have made to said infected objects ,i.e. the baits. The known and unknown viruses can be cleaned effectively.
机译:一种用于扫描和清除计算机病毒的方法,系统和介质。所述方法包括以下步骤:在计算机中模拟计算机病毒驻留的虚拟计算机情况;提供多个被计算机病毒感染的被感染物体或诱饵,以诱导病毒感染;将待扫描的目标对象加载到所述模拟虚拟计算机环境中;在所述模拟虚拟计算机环境中激活要扫描的目标对象,以诱使可能附着在所述目标对象上的病毒感染多个被感染对象,并生成已被感染的标准样本;将激活步骤中处理后的多个对象与最初提供的多个被感染对象进行比较,判断是否有变化,如果是,则所述被扫描对象包含病毒,否则,所述被扫描对象没有病毒。所述方法还包括以下步骤:通过分析所生成的标准样本并在确定要扫描的所述目标对象包含病毒时提取关于病毒的信息和知识来对病毒进行分析和学习。通过移除病毒的身体并根据关于病毒的信息和知识以及对病毒进行的修改,修改病毒已更改的关键信息,从受感染的目标对象中清除病毒被感染的物体诱饵。可以有效清除已知和未知病毒。

著录项

相似文献

  • 专利
  • 外文文献
  • 中文文献
获取专利

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号