Thursday, June 23, 2011

How Infections Start

Just like any program, in order for the program to work, it must be started. Malware is similar in this respect and it must be started some way or another in order to do what it was created to do. For the most part malware will run by creating a configuration in the Windows Registry in order to make it start when the computer starts.

Unfortunately, though, in the Windows operating system there are many different ways to make a program start which can make it  hard for the average computer user to find manually. Luckily, there are programs that allow us to cut this confusion and see the various programs that are automatically starting when windows boots. The program recommended, because it is detailed and free is Autoruns from Sysinternals.

When you run this program it will list all the various programs that start when your computer is booted into Windows. For the most part, the majority of these programs are safe and should be left alone unless you know what you are doing or know you do not need them to run at startup.


At this point, you should download Autoruns and try it out. Just run the Autoruns.exe and look at all the programs that start automatically. Don't uncheck or delete anything at this point. Just examine the information to see an overview of the amount of programs that are starting automatically. When you feel comfortable with what you are seeing, move on to the next section.

No comments:

Post a Comment