function characteristic:
1, pioneered the dynamic simulation anti-virus expert system;
2, automatic accurate identification of new viruses;
3, the program behavior monitoring simultaneously;
4, automatically extract the feature value to achieve multiple protection;
5, visual display of monitoring information;
Four subsystems:
1, known virus identification
2, unknown virus identification
3. Suspicious procedure Diagnosis
4. Process Source Analysis
1, the first dynamic simulation anti-virus expert system: The behavior of the virus analysis, induction, summary, and combined with anti-virus experts to determine the virus experience, refined into a virus identification rule knowledge base. The simulation experts discovered the mechanism of the new virus, through the automatic monitoring of various program actions, the automatic analysis of the logic relationship between the program actions, the comprehensive application of the knowledge of virus recognition rules to realize automatic identification of new virus, to achieve the goal of active defense.
2, automatic and accurate identification of new viruses: distributed in the operating system of many probes, dynamic monitoring of the operation of the program to invoke a variety of application programming interface (API) of the action, automatic analysis of the logic of the program action, automatically determine the legality of procedural behavior, automatic diagnosis of new viruses, clear report diagnosis To effectively overcome the current security technology mostly based on a single action, frequently asked whether or not to allow the modification of the registry or access to the network, causing confusion to users and users because it is difficult to judge for themselves, resulting in miscalculation, resulting in damage or normal procedures can not run the defect.
3, the program behavior monitoring simultaneously: in the overall monitoring program operation, the Intelligent analysis program behavior, discovers the new virus, automatically stops the virus behavior and terminates the virus program to run, automatically cleans the virus, and automatically fixes the registry.
4, automatically extract the feature value to achieve multiple protection: while adopting dynamic simulation technology, it is effective to overcome the defect that the feature value scanning technology lags behind the virus, discover the virus signature automatically after discovering new virus and automatically update the local unknown feature library, realize "capture, analyze, upgrade" automation, and more effectively prevent the same virus from infecting again. , so that the user system can be safe and efficient multiple protection.
5, visual display monitoring information: micro-point Software on the monitoring of the program behavior, including program operation, program generation, network information, attack log, such as a large number of information visualization display, the user can intuitively grasp the operating state of the system, and based on its analysis of the security of the system.
The software testing period for free registration, registration can enjoy the upgrade services.
Official website: http://www.micropoint.com.cn
Official Downloads:
Http://download.micropoint.com.cn/mp.070730.1.2.10570.0157.r1.zip