Invention Grant
- Patent Title: Run-time additive disinfection of malware functions
- Patent Title (中): 运行时添加剂消毒恶意软件功能
-
Application No.: US12412690Application Date: 2009-03-27
-
Publication No.: US08826424B2Publication Date: 2014-09-02
- Inventor: James I. G. Lyne , Paul B. Ducklin
- Applicant: James I. G. Lyne , Paul B. Ducklin
- Applicant Address: GB Abingdon Oxfordshire
- Assignee: Sophos Limited
- Current Assignee: Sophos Limited
- Current Assignee Address: GB Abingdon Oxfordshire
- Agency: Strategic Patents, P.C.
- Main IPC: G06F11/00
- IPC: G06F11/00 ; G06F21/56 ; H04L29/06

Abstract:
In embodiments of the present invention improved capabilities are described for runtime additive disinfection of malware. Runtime additive disinfection of malware may include performing the steps of identifying, based at least in part on its type, an executable software application that is suspected of being infected with malware, wherein the malware is adapted to perform a function during the execution of the executable software application, predicting the malware function based on known patterns of malware infection relating to the type of the executable software application, and in response to the prediction, adding a remediation software component to the executable software application that disables the executable software component from executing code that performs the predicted malware function.
Public/Granted literature
- US20100251000A1 RUN-TIME ADDITIVE DISINFECTION Public/Granted day:2010-09-30
Information query