Monday, February 22, 2010

How an Anti-Virus Works

You have bought a PC, got the net connection. Your vendor advises you to buy Antivirus software, which you do promptly and install it on your PC. One fine day you are doing you work on the computer suddenly you see a flash that a virus has been caught. It recommends you to delete it. Well then your virus scan is working properly. But ever wondered how it actually the antivirus works?


Well then here is how the anti virus works. The antivirus carries out some scans which are as following:

 

One method is signature checking. This is the most commonly used by antivirus programs. The software detects malicious coercion. Actually the software has a wide database of known viruses Spywares and malwares. So each time the software scans a file simultaneously compares it with names registered in the data base. If the Software finds a resembling or and exact match of the files signature then it considers that as virus.  It holds this file as a quarantine file. Now that is actually encryption. The software encrypts the file in such a way that it is rendered useless for the user. Thus there is only one way out that is permanent deletion of the file.  But as there are new types of viruses lurking around the software database has to be updated at regular interval to detect threats.

Next method is called as behavior monitoring. This is another way of detecting viruses on your PC. In this method the anti virus is constantly scanning the behavior of all the files active. If any program is attempting to access the root kit of any program or modify any exe file, then this activity of the malicious program sets the trigger. This activates the assertion and takes the necessary steps. This methodology of working is a good one as this can detect the virus only by monitoring its behavior. However, it can be irritating if it constantly alarms the user about every single activity. 

 

Third method is called Emulation. It is the third most commonly used. It catches threats or viruses by simulation. It experiments with the files behavior in a virtual runtime environment. If a threatening file is on the system it takes its prototype and runs it in the virtual environment. If it finds that this file could be hinder the PC's working then it quarantines it immediately or asks the user to decide about it.
This was the working of the Anti-Virus software.


To get your PC secured from the hazardous effects of the viruses call Save My System experts for the Computer Security. We at Save My System also offer deals in Computer Repairs.