Tuesday, September 14, 2010

Computer Virus Capabilities


A computer virus is said to be an application if already have the following five basic capabilities:

1. Ability to get information.

2. Examined the ability of a program.


3. Ability copy itself and infect other files.


4. The ability of manipulation.


5. The ability to hide themselves.


6. Ability to mengexploitasi a weakness in the system.


7. The ability to defend themselves from the virus exterminator applications & worms.


Targets of virus attack.

1. Registry.


Five main keys to the registry.


HKEY_CLASSES_ROOT.


HKEY_CURRENT_USER.


HKEY_LOCAL_MACHINE.


HKEY_USER.


HKEY_CURRENT_CONFIG.


2. System Configuration Utility.


From MSCONFIG regular user checks the file / run any application automatically when windows startup.From MSCONFIG user can delete unwanted applications list.From here the user can also freely edit the contents of Win.ini file, autoexec.bat, and config.sys SYSTEM.INI.

3. Autoexec.bat and Win.ini file.


with a bit of manipulating the contents of two files, viruses can be automatically run when Windows boots. The two files above will be processed during startup.Win.ini file located in the Windows directorycontains some configuration that regulate the OS, can automatically run a specific file by modifying the contents of Win.ini file.




4. Task Manager.

Task Manager will show any application running either in background or not.Through the Task Manager we can stop the "forcible" program that we do not want.Own methodologies vary. There is an automatic switch off function when the mouse tebuka Task Manager, and others directly to do shutdown or restart.


5. Special Directory.

There are two special directory that has become a "subscription" worms and viruses are the windows directory and the directory system.Both this directory has unique because it is easy for setting a variable when we write program code.


6. Cloning and Icon.

Before you open any document, be sure to correct that which is used COMPATIBLE sengan icon file extension should be. Many users will neglect this.Get used to view the properties file first before opening it.

Viruses are usually programmed to be able to detect the Application Title of the program is running. Usually when you find the Application unwanted title as the words "Kill", "Antivirus," "Removal," "Anti", "Regsitry Editor", "Untility", "Exterminate", "Prompt" then the virus will stop the process of program .

Related posting:

0 comments:

>