Title of article :
MALWARE AVOIDANCE USING REDIRECTION TECHNIQUE
Author/Authors :
Al-janabi, Rana Jumaa Surayh Al-Qadissiya University - College of Medicine, Iraq
Abstract :
The Windows registry is behind almost every great feature in the operating system. Image file execution options (IFEO) is assumed as useful key in registry. In spite of that, malicious software (Malware) uses this key to convert a lot of system program s paths to their malicious code using redirection technique. Actually, IFEO can be considered as a very important key that can be used beneficially or harmful to both. In this research, redirection technique is analyzed and used to build software that employ this useful key to provide helpful service by changing malware paths to illusion paths as preventive method in order to protect computer against attack by those malware. This software is designed using assembly language and WinAsm to build friendly user interfaces.
Keywords :
IFEO , Image File Execution Options , debugger , RegCreateKeyEx , RegSetValueEx , Disable system tools.
Journal title :
Al-Nahrain Journal Of Science
Journal title :
Al-Nahrain Journal Of Science