EP0304033A2

Method for diagnosing a data-processing installation infected with computer viruses.

Abstract

The method is characterised by using a virus-free program P containing an algorithm, from which a program authentication code PAC = f (P) is formed with the aid of the algorithm at time x = to and is stored together with the program. For testing purposes, this virus-free program is then input as decoy program into the data processing system to be investigated at later times x' = t1, t2, t3,...tn, and started, the program authentication code PAC' produced during this process in each case is compared with the stored program authentication code PAC and an error signal is generated if they are not equal.

EP0304033A2, drawing sheet 1
Sheet 1 of 1

Term

Term ended

Projected expiry passed 17 August 2008, 18.1 years ago.

  1. Priority
  2. Filed
  3. Published
  4. Projected expiry
  5. Today

2 claims: 1 independent, 1 dependent

  1. c-de-0001
    1. A method for diagnosing an infected computer viruses data processing system by means of a test program, marked through the use of an algorithm f containing virus-free program P from which the time x = to use the algorithm, a program authentication code PAC = f is formed (P) and stored along with the program and that this virus-free program for later times x '= t1, t2, t3 ... tn as bait program in which to be examined data processing system introduced and launched, the case respectively resulting program authentication code (PAC' compared) with the stored program authentication code (PAC) and inequality a error signal is generated.