Malware Flashcards
Domain: Security
Malware Removal Process
- Investigate/identify symptoms
- Quarantine infected systems (turn off network card)
- Disable System Restore (Windows Only)
- Remediate Infected System (Rebooting into Safe Mode)
4a. Update anti-malware software
4b. Scanning/Removal techniques - Schedule auto updates and scans (weekly)
- Enable system restore and create a restore point
- Educate End User
Symptoms of a Malware Infection
~ Running Slowly
~ Locking up / Unresponsiveness
~ Restarts or Crashes
~ Unusual error messages
~ Icons that disappear or show up
~ System restore not functional
Spyware
Secretly gathers information about user without consent
Rootkits
Software designed to gain administrator level control without detection
Botnet / Zombies
Botnet: A collection of compromised computers under control of ‘master node’
Zombies: Computers used as a pivot point or impersonator
Distributed Denial of Service (DDoS)
Multiple machines target a single victim and attack at the same time
Virus
Malicious code that runs without user’s knowledge
Worm
Malicious software that can replicate itself without the user’s knowledge
Trojans
Piece of malicious software that is disguised as a piece of harmless software
Ransomware
Restricts access to a victim’s computer until ransom is received