Senin, 10 November 2008

Creating a virus with Visual Basic (Part. 1)

Infection System
If we accidentally run / generate a virus (Virus
Computers). But that would be done after the virus has risen from sleep
menginfeksi is a system that is the target of computer viruses that are inherent
on the target computer. So even though the computer was restarted in ersebut virus will remain active dikomputer the target.
How the virus menginfeksi system:
1. Do multiplication to the system.
The first step is done by the virus when most users
the virus is run dikomputernya do multiplication kesistem
user. Multiplication process to work the system so that the virus
remain active when the computer restart. Usually the results to the multiplication
the system has a name that is almost the name of the file system and there are also
with the same name of the file system only the location of the files are different
with the original files. Example (winlogon.exe, lsass.exe, services.exe, csrss.exe,
iexplorer.exe, shell.exe, etc.).
2. Save registry.
Once the virus has successfully reproduce themselves the virus after kesistem
use the registry as a bunker. Kok
using the registry, you should be able to protect the virus itself
without the assistance registry? True, but even if so many
the possibility the virus can be overcome by drowning or software
among others. But with the assistance registry borrow from the operating system
the virus can protect themselves very well.
Due to the key operating system is on the registry. With the help of registry
This virus is able to run themselves into safe mode-mode or
into safe mode-mode dos even. And pass the virus to
is still not visible in the circumstances that make it difficult for users
remove the virus manually.
3. To activate the virus, which has been located disistem.
Once the virus have been doing multiplication to the system registry and Save
then the virus is run the virus has been there
disistem that although bring any diskettes or is issued
then the virus will remain active.

Tidak ada komentar:

free counters