Can anyone give me advice on how to figure out which virus I have on the network when it seems like the LAN is infected, so that I can properly remove the virus? Please let me know your methods of detection and determining which virus you have.
Murray, what if your network is down because of the virus and you don't have internet access (or it's very sluggish) or what if the av still isn't detecting the virus (for example if it's a very new virus)? Unless this method always worked for you then great!
Dyarwood, I don't have a virus, I'm asking a what if question.
If that is the case, then you would never know what the virii is that has infected you.. If it is new, there is nothing that could detect it to begin with.. You question leaves alot in the interpretation and is so hypothetical, there is NO for sure answer !!
Otherwise, I would be downloading and installing "Stinger" on a floppy and booting each system with it.. Does a virii check of the most common and newer virii during boot up !!
Go home (or next door, or to a Library, or the office across the street), download the updates from the Internet, burn them to a disk, go back to the office and update your network.
Hope This Helps!
Ecobb
"My work is a game, a very serious game." - M.C. Escher
Managed Switches:
Put on Rate Limiting on Broadcast and Multicast Traffic. That would stop packet storming by things such as Nachi and Blaster. Check which ports are hitting the switch hard abd unplug. Thus freeing up bandwidth.
Router:
Filter packet to drop fowarding of Broadcast traffic and monitor packets using a packet sniffer.Unplug rouges
Firewall:
Look for pc's going through unknown ports or trying many ip addresses. Block this addresses and ports. Again trace rouge pc's. Again unplug rouges.
Stu..
Only the truly stupid believe they know everything.
Stu.. 2004
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.