Disabling autorun is generally a good idea but it's not necessarily going to make much of a difference since there are so many Windows Explorer shell code exploits that will still work even with autorun turned off (Stuxnet is one notable worm that works this way but I'm sure there are countless others). Turning autorun off (or using Ariad) is a good first step though.
|