terça-feira, 11 de junho de 2019

24

You are examining malware code and discover that a particular piece copies itself  into the location

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run.

What is the purpose of this?


To ensure the malware runs at every login to the OS.


This key indicates an application that should run as soon as the user logs in to the system.


An application found in this key does not run at every boot, and an entry here does nothing to hide it from antivirus software on the system.


All aplications do not need to appear in this registry key.


Sem comentários:

Enviar um comentário