Subscribe to Windows IT Pro
January 03, 2005 12:00 AM

An Essential Tool in the Age of Malware

SQL Server Pro
InstantDoc ID #44960
Rating: (1)

 

I hope that everyone has had a safe and wonderful New Year!  Ours was the most fun we’d had in many years.  On the other hand, I had to spend some precious holiday time doing something that seems more common now than ever – cleaning one of our home PC’s of all of the accumulated spyware, malware, and Trojan horses that had nearly immobilized it.  And that’s despite the fact that I have both McAfee VirusScan, Lavasoft AdAware, and one or two other freeware products on the machine.  In the words of Howard Dean - Yeeargh!!

 

The most annoying feature of much of this malware is that they somehow install themselves as autostarting programs.  This feature is a defense mechanism that reinstalls the malware should you happen to find and remove the malware executable.  As a result, you might walk away from a computer you believe you’ve cleaned only to return a couple hours later with a dozen IE browsers on the screen hawking everything from on-line retailers to on-line casinos.  

 

The answer to this problem is a very nifty program from the Sysinternals website of Mark Russinovich and Bryce Cogswell – Autoruns, currently at v6.1.  One of the cooler features is that you hide any autostarting Microsoft program from the display with a single click.  In this and many other ways, tt is vastly superior to the MSConfig utility that ships with Windows ME and XP.  (There are also lots of other very useful freeware utilities on the site.)

 

You can find Autoruns at http://www.sysinternals.com/ntw2k/freeware/autoruns.shtml.  As it turns out, there’s also an article describing advanced features of the utility at http://www.win2000mag.com/Windows/Article/ArticleID/44089/44089.html.

 

Of course, my use case is only one of many situations where you might want to see what programs automatically start on your computer.   But, in my case, it was a big help. 

 

-Kevin

Related Content:

ARTICLE TOOLS

Comments
  • Anonymous User
    7 years ago
    Jan 11, 2005

    Power users and technologists would probably find Autoruns more sophisticated and therefore more interesting. But from a layman point of view, HijackThis can get the non-techies back on their feet more quickly. And the grass-roots support effort that has risen up around HijackThis provides a second-layer of help.

    But, of course, two free tools are better than one. And SysInternals has proven themselves at the top of the power tool game many times over.

  • KEVIN
    7 years ago
    Jan 10, 2005

    Great tip! I've only heard about HijackThis from googling for specific trojan horses or other malware that my kids have somehow loaded onto their home machine. It seems like HijackThis always has a response for the malware we encounter.

    I'll check it out and post about it some time in the future.

    Thanks,

    -Kevin

  • Anonymous User
    7 years ago
    Jan 08, 2005

    >> In this and many other ways, tt is vastly superior to the MSConfig utility that ships with Windows ME and XP

    And in many ways, HijackThis is vastly superior to Autoruns.

You must log on before posting a comment.

Are you a new visitor? Register Here

advertisement

advertisement

Windows is a trademark of the Microsoft group of companies. Windows IT Pro is used by Penton Media Inc. under license from owner.