Invention Grant
- Patent Title: Malware detection
- Patent Title (中): 恶意软件检测
-
Application No.: US12658188Application Date: 2010-02-04
-
Publication No.: US08677491B2Publication Date: 2014-03-18
- Inventor: Pavel Turbin
- Applicant: Pavel Turbin
- Applicant Address: FI Helsinki
- Assignee: F-Secure Oyj
- Current Assignee: F-Secure Oyj
- Current Assignee Address: FI Helsinki
- Agency: Harrington & Smith
- Main IPC: G06F11/30
- IPC: G06F11/30 ; G06F12/14 ; G06F21/56 ; G06F21/55 ; G06F21/62 ; G06F12/16 ; G08B23/00 ; G06F21/51 ; G06F9/44 ; G06F21/12 ; G06F17/30

Abstract:
According to a first aspect of the present invention there is provided a method of operating a computer to detect malware, which malware writes a copy of an executable file to a non-volatile memory of the computer and creates a launch point that causes that executable file to be run at start-up of the computer. The method includes, during the shutdown procedures of the computer, monitoring the creation and/or modification of any launch points and, for any such modification or creation, saving a further copy of any executable file associated with the launch point to the non-volatile memory, and, following a subsequent start-up of the computer, examining said further copy to determine if it is potential malware.
Public/Granted literature
- US20110191850A1 Malware detection Public/Granted day:2011-08-04
Information query