You are here: hacking technology > the virus to be related > Content
Hot Articles
Recommend Articles
New Articles
Everybody may kill the poisonous small move to throw off the big wooden horse
  Add date: 07/08/2008   Publishing date: 07/08/2008   Hits: 56
Total 3 pages, Current page:1, Jump to page:
 
font>
Facing the virtually impossible to guard against wooden horse, takes the average consumer saying that how to guard against, how to deal, how to lose falls lowly in? Certainly, what first is most important is grips the tight fence - - to get the patch promptly for the operating system; Resists the wooden horse - - not to be casual outside the great distance downloads and the movement unclear origin procedure. Today discusses, if the first defense line is broken through, the wooden horse already entered and was stationed in the computer, then how should distinguish, and does not let it prevail?

¡¡¡¡First, does not give the jurisdiction, starves to death the wooden horse

¡¡¡¡In systems and so on Windows 2000/XP/2003, the user may join Administrators, Power Users, Users and so on different jurisdiction group, has the different rank operation jurisdiction separately. If you usually also access the net in to have a look at the news, hits the game to chat, compilation language processing several pictures, but does not need to load and unload the software frequently, then might as well lays aside the manager, uses a low jurisdiction the user account.

¡¡¡¡Through “the control panel -> user account”, founds a new user, after then installment commonly used software, joins it to receives limits the user (Users) group. Is limited the user to be able the normal operation majority of procedures, but is unable to system's heart - pneumatic system table of contents and the registry carries on writes the operation. This operation needs a prerequisite, namely the C plate should use the NTFS form.

¡¡¡¡The wooden horse as well as other malicious software have a special hobby: Often likes hiding in the system directory, and the revision registry achieves the autoloading the goal. But uses this means that to a great extent has limited wooden horse's seepage. Even if the wooden horse entered the hard disk, also will not have the jurisdiction to carry on the corresponding operation, reduced wooden horse's destructive power effectively, will extinguish afterward kills in the wooden horse process not as for the destruction system.

¡¡¡¡But some softwares need the manager jurisdiction account only then to be possible the normal operation, sometimes or we need to install some softwares, at present the account jurisdiction is insufficient, how to manage? The cut user is too troublesome, moreover also easy, therefore gives the wooden horse opportunity to be exploited. Then, realizes with the following means!

¡¡¡¡The right key click procedure, the choice “the movement way”, springs the window, then the choice appropriate account and inputs the corresponding password then. Such software may other account way movement, but has nothing to do with the current account. Although compared the direct manager account to register the operation to be troublesome, but in the security obtained the safeguard, was worth.

¡¡¡¡Small prompt: Sometimes some commonly used softwares must by the manager jurisdiction movement, if each time such chooses is too rather troublesome, script RunAs may solve this problem.

 
Other pages: : 1 * 2 * 3 * Next>>
Prev:Trojan-PSW.Win32.QQPass.cdw analysis Next:Trojan-Dropper.Win32.Small.cub analysis

Comment:

Category: Home > the virus to be related