Advice Request Does Avast's BB provide protection to important Registry Keys and COM components?

Please provide comments and solutions that are helpful to the author of this topic.

Status
Not open for further replies.

Winter Soldier

Level 25
Verified
Top Poster
Well-known
Feb 13, 2017
1,486
The majority of malware needs to take control of the system when it is started. In most cases, there are two fundamental methods and processes to accomplish this:

- in the first place the creation, in the Windows registry autorun keys, of the link to the infected file.

- in the second place, the creation of a copy of the infected file in the Windows autorun directory.

The registry has a considerable number of autorun keys: Run, RunService, RunOnce and RunServiceOnce:

Code:
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\]

[HKEY_CURRENT_USER\SOFTWARE\
Microsoft\Windows\CurrentVersion\]

In case of infection, the search executed in these locations will produce the identification of different keys, with paths that lead to the malicious executables.

So, Windows registry and critical system files monitoring, are one of the main tasks that a good antivirus must have.
 
  • Like
Reactions: frogboy
Status
Not open for further replies.

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top