Site Archives Guide
Malware Basics – Part 2
Part 1 – Recognizing an Infection
Part 2 – Incident Response Plans and Procedures
In the first part of our Gladiator guide on Malware Basics, we discussed different methods of determining whether a device or network has a malware infection. Having discussed how to find these malicious infections, we will now review what to do when your phone begins ringing off the hook with users claiming that “the Internet is slow,” or that their workstations are exhibiting signs of a malware infection. Administrators’ questions at that point usually include, “Where do we go from here? Whom do we notify and what actions need to be performed to ‘clean up’ the device?” The answer to all of these questions should be documented in a formal Malware Incident Response Plan.
Malware Basics – Part 1
Part 1 – Recognizing an Infection
Part 2 – Incident Response Plans and Procedures
Introduction
We’ve all been faced with the following situation at one time or another. Imagine you’ve just walked in the door of your office, and one of your coworkers comes up to you complaining that his computer is running slowly. You tell him that is normal in the morning, but then he says his web browser keeps popping up new windows and then crashing. Of course, he forgets to mention that he was on a flash game website when it all started, until you get to his desk and discover this for yourself. So, now what do you do? You suspect this machine has a virus or some other type of malware, but you aren’t sure. The computer has fully-updated virus definitions and a full system scan didn’t find any malware. But is the machine safe?
In Part 1 of Malware Basics, we’re going to review some signs that a machine may have malware. Then we will go over some useful tools for identifying suspicious files even if your antivirus suite does not detect anything. Finally, we’ll talk about how to identify what type of malware you found. Part 2 of this series will deal with Malware Incident Response.
Find It Quickly
Find what you're looking for quickly by using our keyword search. Can't find it? Try our links below.
Monthly Archives
Find posts by the month they were written.
- July 2010
- June 2010
- May 2010
- April 2010
- March 2010
- February 2010
- January 2010
- December 2009
- November 2009
- October 2009
- September 2009
- August 2009
- July 2009
- June 2009
- May 2009
- April 2009
- March 2009
- February 2009
- January 2009
- December 2008
- November 2008
- October 2008
- September 2008
- July 2008
- May 2008
- April 2008
- March 2008
- January 2008
- December 2007
- November 2007