Virus, kinds of forming
Written by Maleo on 07.31Computer virus is a computer program ( malware) owning ability to self duplicate by inserting its program into a another file. Look like such as biological virus, computer virus earn to disseminate swiftly at files in a computer, or even infecting file in another computer, through network and also through activity of transfer file.
Farther about virus in the world of cryptography security mentioned by a virus represent shares code/script govern for parenthetic self duplicating at some other malware code ( zombie, worms, trojan).
Virus Type 1.
1. Macro Virus : representing writed to virus use a lot of command script to earn to conduct a lot of ability. This virus generally groan file document.
2. Micro Virus : representing finite virus ably but very dangerous. Virus of this type of groaning MBR(master boot Record), boot sector, *. exe or if script writing use method of assembler or C earn to destroy BIOS. This type of predominating era virus first, distinguish owned by prima facie ability is earning to patch at master file.
systematic way Virus
1. Virus exploit feebleness / interpose in windows for doing activity.
2. Interpose layed in configuraton windows of registry, configuraton in other files windows.
3. relationship of programs Windows which not solid and also recognition to inaccurate program also be exploited by virus.
4. Virus have ability to defend they self from security of Operating System.
Way Of Virus Job generally
Following some method which generally be [done/conducted] by virus of moment of system infection [of] [at] computer we
- Hiding out from window Application of Task Manager
This conducted by virus to hide they activity that is hide the task from window Application of Windows Task Manager. User Number there no application is running. just If only virus not hide they task hence easily we earn to discontinue.
- Duplication and self manipulation.
Mostly the virus will duplicate they mains file into folder system. Virus duplicating will take possession of most folder often be accessed by most user. Duplication Process represent action of copying of file of itself. To earn to vanish virus files hence beforehand we discontinue the virus process. See To Deceive Task Manager to delete them.
- Writing information Startup
Virus also can conduct to execute automatically to x'self after system infection. If done method generally by writing down startup of second of Root Key Registry that is at " HKEY_CURRENT_USER" as well as " HKEY_LOCAL_MACHINE
Give you attention to the Root SOFTWARE/MICROSOFT/WINDOWSNT/ CURRENT USER/WINLOGON. Ordinary this place virus write down comand to activate x'self. They target in order to the virus can running every infected by user computer and is peaceful from another user for accessing.
- Exploiting folder Startup
Method than conduct of next virus by placing shortcut or program virus to folder startup. Ini earn accessed through right click of start menu select/choose explore all users, program, startup.
- Virus automatization with Schedule Task.
Virus earn to conduct scheduling to activate x'self according to time which have been arranged. With writing down file extension *. job and kept to folder windows they earn active once upon time.
- Execute more than one " Task"
For take care of they existence virus conduct multi-task that is run virus program more than one in same moment by especial mains virus run other virus mains. target Multi-Task in order to each virus earn to check moment of one of virus mains killed hence the other virus mains will be direct run them again or do blocking to system such as doing to restart. This matter will make system will be felt heavy since they process requiring more resources CPU.
- Blocking the program windows
For take care of they existence virus conduct blocking Task Manager in order to process virus cannot to end-task and Registry Editor in order to the information writed by virus cannot be altered by user. Msconfig facility also be blacked out since here we earn easily kill startup virus running. Folder Options also be omitted by virus to take care of virus file which super hidden and or hidden do not see by user.
- Deceiving Task Manager
Task Manager cannot stop the process having high priority and needed by system like "lsass.exe, smss.exe, services.exe, winlogon.exe, and csrss.exe" so-called also " critical process". With impersonating by the name of as according to " critical process" hence the virus cannot to " End Process" by weak task-manager to recognition of file of system and system process in fact.
- Remain to running in Safe Mode
The effect way of job windows which always rely on registry of is inclusive of moment of safe mode. If key required registry for load of system of safe mode have been broken, hence we what know will happen.
