Do you want to quickly check out whether your machine is infected with the “DNS Changer” Virus which is supposed to go global on Monday July 9th. Read on..
I know everyone that reads Dads’ Taxi is very alert about Malware and virusus.
Tomorrow (Monday, July 9th) is when up to 300 thousand PC’s may go dark because of the “doomsday virus”. What does going dark mean? It mean you won’t be able to get on the Internet and update your Facebook status, or do ANYTHING on the internet.
Of course the media is hyping this possible situation to the max and trying to get everyone to be scared silly. Well on Dad’s taxi, we try to alleviate your concerns by providing you with links that were published on Yahoo that you can use to see whether your computer is/was infected. It takes 20 seconds of your time and any one of the links below will do the check for you.
The Taxi is providing these links as a courtesy to my legions of followers. Ok, the ten’s of follower’s I have!
Online security firms, Facebook and the FBI are offering free diagnostic checks for users whose computers may be infected. Here are links to several sites:
• Malware check: http://dns-ok.us/
After you run the real time tester and you see the image below, your machine has been infected!
• FBI: https://forms.fbi.gov/check-to-see-if-your-computer-is-using-rogue-DNS
• DNS Changer Working Group: http://www.dcwg.org/
• Facebook: http://www.facebook.com/notes/facebook-security/notifying-dnschanger-victims/10150833689760766
• McAfee: http://www.mcafee.com/dnscheck
Keep in mind, this malware was discovered and and baddies that originated this malware were arrested. The information was excerpted from the following Yahoo News Site:
- The problem stems from malware known as DNS Changer, which was created by cybercriminals to redirect Internet traffic by hijacking the domain name systems of Web browsers.
- The ring behind the DNS Changer virus, discovered in 2007, was shut down last year by the US Federal Bureau of Investigation (FBI), Estonian police and other law enforcement agencies.
- Because the virus controlled so much Web traffic, authorities obtained a court order to allow the FBI to operate replacement servers which allow traffic to flow normally, even from infected computers.
- But that order expires Monday, when experts say infected computers will face an “Internet doomsday.”
Over the past week, I’ve been busy trying to clean up a nasty virus/malware that one of my machines picked up on the Web. I certainly learned some valuable lessons from this experience and I’m going to share them with you.
It took me over 24 hours to get rid of the nasty bug I had on my main computer. I’m still trying to get my machine back in good shape. I know, it’s my own fault for not being more consistent in the way I protectmy primary machine, but fortunately for me, I “think” I survived.
- Never ever make your default profile an “Administrator” profile. Every user on your computer should have their profile as “regular user”. Only on administrator. With this, you reduce substantially, the probability of a virus latching on to your machine.
- This is regardless whether you use XP or Vista. Even with multiple layers of Antivirus/HW and Software Firewall/Anti Spyware Protection, a nasty “Antivirus Pro 2009” spyware was able to penatrate my defensive line and get access to my machine.
- Stop using IE 7 as your primary browser! Use Firefox as your primary and only browser. If you use Firefox, make sure you have Script Blocker and Add Block Plus installed as Add on’s.
- If you do get a virus, immediatley power down and if you have a seconday machine, Google the symptoms. In my case I quickly found out that the site bleepingcomputer had the latest posting on the virus/malware that I had gotten.
- Follow the directions that the site gives you exactly to work on virus removal.
- If you have do download anything, make sure you download it to an accessible drive on YOUR computer so when you are in “safe” mode, you can work on the virus removal.
- When you are working on virus removal, ALWAYS, ALWAYS work in safe mode (this is a restricted mode of your computer). This is the mode when you press “F8” while rebooting your computer.
- Once you have cleared your virus/trojan/malware, Make sure you have an up to date Software Firewall (Get a free one if you don’t have a paid one). Make sure you have real-time spyware protection on your computer.
- Remember that you must have multiple layers of protection on your machine. Just as we are trying to protect our machine, others are thinking of ways to hack into our machines.
In the above scenario, I utilized the following software/Tools to clear out my virus: