client Malware processing scenarios
before
wordsFirst of all, from the outbreak of Veekim Mutant virus to the present, we gradually found that anti-virus software antivirus, anti-virus mechanism has become more and more passive. Anti-virus software often does not play a role, will be subject to the virus, the virus was put to death. Because of this, we must master and use some of the more powerful manual removal tools.
IceSword1.2
Manual Avira need software, especially rookit technology.
Autoruns
Queries all boot entries for the system to boot.
Sreng
System Startup items and feature fixes
LAN viewing Tools
The MAC address can be conveniently queried for use with other tools.
Cloud Firewall 1.25
ARP firewall, can detect ARP attack source
Filemon
See in real time which processes are reading and writing files
Procexp
Process View tool.
Regmon
See which processes are accessing the registry
Processmonitor
The Process View tool is a synthesis of procexp and Regmon.
Psexec
You can run programs with different account permissions.
Sniffer Pro 4.7
Network packet sniffing tool
Winsockxpfix
WinSocks Repair Tool to initialize the system TCP/IP protocol
Network means a judge
Network management software.
Netcut
Network scissors hand, network management software
System Safety Monitor
system security monitoring software. Need.
Regworkshop
A good registry comparison tool
Regsnap
A good registry comparison tool, in addition to comparing the registry, there is the ability to compare system files, quite practical.
the security guard
Quite practical malware cleanup tool. Man-made Avira is sometimes not comprehensive.
Poison Sweeper expert
Ibid. Complement each other.
Specific software use methods, will be more detailed in the future to supplement.