US 7,540,030 B1
Method and system for automatic cure against malware
Oleg V. Zaitsev, Smolensk (Russian Federation)
Assigned to Kaspersky Lab, ZAO, Moscow (Russian Federation)
Filed on Sep. 15, 2008, as Appl. No. 12/210,732.
Int. Cl. G06F 11/00 (2006.01); G06F 12/16 (2006.01); G06F 15/18 (2006.01); G08B 23/00 (2006.01)
U.S. Cl. 726—24  [726/22; 726/23; 726/25; 713/187; 713/188] 16 Claims
OG exemplary drawing
 
1. A method for curing a computer against malware components and collecting malware-related statistics, the method being executed on a computer having a processor and a memory, the method comprising:
(a) receiving a protocol log of a user computer;
(b) providing the protocol log to an auto-parser;
(c) analyzing the protocol log and generating a first cure script by the auto-parser;
(d) storing the protocol log and the first cure script in a database;
(e) generating a helper solution based on the first cure script;
(f) storing the helper solution in the database;
(g) sending the helper solution to the auto-parser;
(h) generating a second cure script based on the helper solution by the auto-parser;
(i) providing the second cure script to the user;
(j) receiving quarantined files from the user, wherein the files are quarantined by execution of the second cure script; and
(k) repeating the steps (b) through (j) for another protocol log.