Wednesday, May 20, 2009

Posted by Christian

Are you doubt about virus existence in yours??
Here is a way that I usually did to check it..

  1. Make sure your FolderOption menu still exist in Tools menu of Windows Explorer
  2. Open Folder Option menu and make sure you have UNCHECKED "Hide extension for known file types", "Hide protected operating system files (Recommended)" menu and choose "Shows Hidde Files and Folders" in "View" tab.
  3. Look in drive C: in Windows Explorer. Folder "RECYCLER" and "System Volume Information" must be appeared, These two folder are default folder of windows hardisk and its attribute are super hidden(System Files). RECYCLER contains deleted files and System Volume Information contains Recovery Files of Windows.
  4. If those two folders appeared, thank God because your computer may not contain viruses.
These step isn't a fixed way to make sure the virus existence in your Computer. But almost every virus hide on "Super Hidden" attribute. This attribute make Windows considered it as a System File that must be protected and mustn't be shown.

Thats why, it's better for you to show your System File while you operating your computer. And thus I suggest you to always use Windows Explorer and make sure you use your files in Detail view. Don't let yourself "tricked" by viruses.

Be carefull about file with Application type. Make sure you know these file. Many viruses are seen as Application. And you must pay attention and delete some file that have type as Application but also have icon of Word document(*.doc) or Screen Saver(*.scr). I highly suggest you to delete it.

These are some virus that I often face in Indonesia:


Generic BackDoor


This virus hide with icon of Word Document and have exe extension(Application). If a computer infected with this virus and the virus process are running, every word document in the flash drive that plugged in to the computer will replace by the virus activator with same name as the original document's file name, has word icon and working as Application. The virus don't wait till the user open the virus extractor but it will work automatically by itself. The time when you see those virus file, the virus started its process.

W32/Conficker.worm!inf

This kind of virus aren't Application. I highly recomended you check your flash disk "Are there any RECYCLER folder on it". RECYCLER folder is default folder ONLY for hard disk. And if this folder exist in your flash drive obviously it is a virus. Delete it!! The file(with *.vmx extension) in folder RECYCLER isn't the virus activator, the activator is in root folder on the flashdisk, Autorun.inf.

These are some information I could provide now. Hope this will help you. Comment awaits.. ^^

0 comments:

Post a Comment

About Me

My photo
Surabaya, Jawa Timur, Indonesia
"IT is easy and fun!!"