Quantcast
Results 1 to 3 of 3
Like Tree1Likes
  • 1 Post By patcooke

Can virus's inject into legitimate process's ? (One for all you tech wizards out there)

  1. #1
    Prenum is offline Junior Member
    Enjoys Windows 7 Forums
     
    Join Date
    Nov 2009
    Posts
    2
    Windows 7/Server 2008 R2 Firefox 3.6.28

    Question Can virus's inject into legitimate process's ? (One for all you tech wizards out there)

    (This pertains to windows 7)

    As title really, is it possible for a threat loaded from something like a web page or something else, to inject malicious dll's into existing legitimate windows processes ? And when i say existing processes i mean the processes and type of stuff that most people always have running in the background like: csrss, explorer, lsass, lsm, services, sidebar, smss, svchost, taskhost, wininit, winlogon, wmiprvse etc etc. And then for that threat to be totally self sufficient, eg it is able to do what ever malicious actions it wants to, like keylogging or web redirection, or denial of access to the system or whatever, just solely buy using the dll''s it has injected into the legitimate processes, and not have to rely on any extra secondary none legitimate process ? (eg it can go about it's business without relying on a extra process that needs to be created via something like a startup entry in windows.) Or is it the case that all viruses, trojans etc always need a stand alone process running in the background in order to execute their actions/monitor the system ?

    Cheers.
    Last edited by Prenum; 07-19-2012 at 06:09 PM.

    Reply With Quote Reply With Quote

  2. #2
    alberto is offline Senior Member
    Enjoys Windows 7 Forums
     
    Join Date
    May 2012
    Posts
    124
    Mac OS X 10.7.4 Chrome 20.0.1132.47

    Re: Can virus's inject into legitimate process's ? (One for all you tech wizards out there)

    I'm no security expert here, but I am reasonably sure viruses can inject code into existing exe files and thus basically you'd be running the virus along with any program you're starting. I am not sure but I think I remember something like this happening to me a few years back.
    I am not claiming to be an expert, so please correct me if I'm wrong!

    Reply With Quote Reply With Quote

  3. #3
    patcooke's Avatar
    patcooke is online now Tier 2 Moderator
    Microsft Most Valuable
    Professional
     
    Join Date
    May 2010
    Age
    67
    Posts
    2,122
    Windows 7/Server 2008 R2 Firefox 11.0

    Re: Can virus's inject into legitimate process's ? (One for all you tech wizards out there)

    There's virtually nothing that they can't infest - that's how they work. And they don't need any permissions or external support to do their thing, they just get on with it. That's why you need antivirus software running to try and block anything from getting in to start with and also regular runs of something like malwarebytes to sweep up anything which manages to get past your first line defenses.
    Last edited by patcooke; 07-20-2012 at 06:28 AM.
    Adamsappleone likes this.

    Reply With Quote Reply With Quote

Similar Threads

  1. Frisco Christmas Lights - Wizards in Winter
    By whoosh in forum The Water Cooler
    Replies: 0
    Last Post: 12-23-2011, 12:11 AM
  2. Replies: 0
    Last Post: 10-07-2011, 04:00 PM
  3. Replies: 0
    Last Post: 10-07-2011, 01:50 PM
  4. [INSTALL] Problems with Installation Wizards !
    By slayerdude in forum Windows 7 Software
    Replies: 0
    Last Post: 06-18-2011, 02:45 PM
  5. Crysis Engine 3 tech demo VS Unreal 3 engines latest tech demo
    By Highwayman in forum Windows 7 Graphics
    Replies: 0
    Last Post: 03-12-2011, 09:54 AM

Visitors found this page by searching for:

windows startup virus injecting

Tags for this Thread

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •