Members Login



Bookmark Us

 
 
 

Newsletter Subscriber

Name:
Email:
How to know if u are infected and what to do
Tutorials - Technical

If you do get infected with something you can check it to be sure on couple of ways.First thing you notice is that your PC is running very slow and your internet connection is probably slower than usual.One more sign is random windows screens pop-ing up ,mostly popups pointing to some porn sites or similar type of sites, while you are not doing anything or doing some other work,Another very accurate simptom is if you see that your task manager is disabled (CTRL+ALT+DELETE).Now that you know you are infected its time to see and identify what type of infection you have,is it some kind of a virus,Trojan horse,botnet or any other.Example if you have that simptom of popup screens you are probably infected with botnet and not a virus,Since these popup screens are sign that botnet master pointed his bot to the site in the popup for clicking purposes an making money through your PC.After you identified what kind of infection you have its time for cleaning.First way is to remove all existing rules from your firewall and let it ask you for every


application you are running will you allow it,make sure you check for all of them where they are connecting too if its ftp stealer for example you should see something like this in your details box Host/ip: ftp.somehost.com Username:username used to login to that host Password:password used to login to that host So you can take that info and connect to his ftp and change password on his ftp so he can't use any of the logs that he collected Also good way to check if you are infected with something is to go to command prompt Start runcmdand you will see dos window where you should type netstat to see list of all active connections,check them and see if there is any unfamiliar connection active.Make attention on connections on non common ports.For example if you find a connection there running on the ports like port 6667 or 6668 and u don't have IRC client running at the momement its a great possibility that your are zombie of somebody's botnet. Your are probably wondering How my anti virus didn't spotted unusual activity how it missed the infection.A lot or malwares out there have options to bypass anti viruses and options to disable their update so later when malware is detected by anti virus companies your PC will still stay infected without your anti virus noticing anything.To see if that is the case on your pc go to "/Windows/system32/drivers/etc/hosts" and inside of it look for your anti virus line and see if its connecting to the update site or its set to connect to localhost(127.0.0.1.)If your anti-virus is connecting to localhost than u are infected 100%.

How to clean PC if you are infected?


First thing you should do is to disable infection from running on startup.You can do that in the start menu in startup directory.Now restart your PC to boot up without infection started,reinstall your antivirus and check the hosts file again.If there is still set to localhost you will have to do manual download of the update package and install it on your pc,if hosts file is ok than run your update directly from antivirus.After virus signatures database has been fully updated check the option on your antivirus to scan on next startup to make sure it start scanning before any important windows files are loaded because in some cases malware can be „injected“ into some of those process.Note that not all antivirus software have that option so i recommend kaspersky or avira which will do the job correctly.After scan infection should be found and removed.I wrote this tutorial for you to realize that sometimes even if you have antivirus and firewall installed you still have chance to get infected.And its a good thing to check netstat connections view from time to time and other mentioned things whenever you notice some strange behavior of your pc.Thank you i hope you enjoyed this little tutorial.If so please rate it and leave the comment.so i know what about what things u like to read and what not...

Your Ad Here

Hits smaller text tool iconmedium text tool iconlarger text tool icon