摘要 |
<p>Disclosed are a method and an apparatus for processing a malicious program in a master boot record. The method comprises: in a procedure of starting an operating system, and during kernel initialization, loading a safe driver; invoking the safe driver after the completion of hardware initialization; after the safe driver is invoked, monitoring a read operation on a magnetic disk through the safe driver; when it is monitored that the read/write operation is performed on the magnetic disk, detecting read/written data, and if it is detected that the read/written data comprises malicious codes, returning disk reading failure information, so as to block the correlation between the malicious program in the master boot record and a malicious driver in a magnetic disk partition. The present invention can effectively prevent the malicious program in the master boot record from damaging the computer.</p> |