Question:
How do I find out what programs are using which certain ports? I have a virus?
anonymous
2009-09-04 08:34:50 UTC
I've isolated the problem down to ports. This trojan or keylogger found its way into my computer and now its using a few ports, slowing down my internet connection speed.

So I played around with it a bit and found that part of it was using a battle.net port. How do I find it on my computer and delete it?
Six answers:
anonymous
2009-09-04 08:58:41 UTC
HACKER DETECTION

Go to Start>Run>type>cmd>enter>type in

ipconfig /all >enter>type netstat -ano >enter

This will tell you what local IP address you have been given, as well as other good information.Like who's got an established link to your computer,their IP and what port their using?



Tracing the hackers IP

Go to Start>Run>Type cmd

In the command window type nbtstat -n and hit enter.

Then type nbtstat -A and hit enter.

Then type tracert _____________ <- insert the IP from nbtstat -A



Go here for more info: http://grizzom.blogspot.com/2009/03/how-to-unhack-your-computer.html



http://www.bleepingcomputer.com/tutorials/tutorial99.html



MALWARE EXCORCISM AND CLEANUP FOR WINDOWS XP

(Easy Step By Step Directions)



(Note) If you don't have a taskbar? Hit Ctrl Shift Esc at the same time and the task manager will pop up. Click on [File] at the top left corner of your task manager and choose New Task (Run).Type cmd and hit ok.In the command window type start explorer.exe and hit enter and "My Documents" will popup and your taskbar should be back?



1.Go to Start->Rt click on My Computer and choose Properties -> System Restore Tab -> check the "Turn off system restore" box -> hit Apply and Ok.



2.Hit Ctrl Shift and Esc at the same time and bring up your task manager and choose the processes tab and look for any shady looking exe's like Regcure.exe or something with allot of random numbers and letters? Rt click on them and choose end process.

(Note)Go here for process info's http://www.processlibrary.com/



3.When your done shutting down what you can, click on [File] at the top left corner of your task manager and choose New Task (Run).Type msconfig and hit Ok. Go in BOOT.INI tab and tick both "Safe boot" and to the right of that "Networking" and hit Apply and Close.(It will boot in "Safe with networking mode" Choose Aministrator)



4.While in "Safe with networking mode" download Malwarebytes.

(Free) http://download.cnet.com/Malwarebytes-Anti-Malware/3000-8022_4-10804572.html?tag=mncol



5.Right click on the mbam setup app you downloaded and rename it xxxx then Dbl click on it and install and update it (If you can) and run a full scan and delete/quarantine all entities it finds (Restart if it asks?)

(Note)If you couldn't update before 1st scan update Malwarebytes and do another scan with a updated Malwarebytes!



6.Go to Start,Run,type msconfig and hit ok.Go in BOOT.INI tab and untick Safe Boot and then go in the Startup tab and (uncheck) all programs (not) needed at startup "Lesser is better in this case" and hit apply,close,restart.Your computer will boot normally and on your desktop a window will popup,check "Don't show this message" box and hit ok.

(Note)Check here for info's on startup programs http://www.techspot.com/startup/

(How to video) http://www.youtube.com/watch?v=rbSwtNiBx5A&feature=channel_page



7.Download Superantispyware,install,update,and run a full scan and

delete/quarantine all entities it finds.

(Free) http://download.cnet.com/SuperAntiSpyware-Free-Edition/3000-8022_4-10523889.html?tag=mncol



8.Go to Start->Rt click on My Computer and choose properties -> System Restore Tab -> uncheck the "Turn off system restore" box -> hit Apply and Ok and your done.



(OPTIONAL)

Download Startup Monitor.It's a add on that acts like a firewall for your startup menu and keeps malware from installing itself without your permission.

(Free) http://www.mlin.net/StartupMonitor.shtml



Download Advanced System Care its a really good free program that has all kinds of optimizing tools and "IObit Security 360" (Part of ASC) is a really good all around security system and works well with Malwarebytes and Superantispyware try it out? (Free) http://www.iobit.com/



Hijack This cleanup tool (Note)This tool is not intended for novices!

(Tutorial) http://aumha.org/a/hjttutor.htm

(Free) http://free.antivirus.com/hijackthis/



How to fix corrupted Windows system files.

1. Go to Start -> Run -> type sfc /scan now ->hit ok.

It will ask you to insert a Windows XP installation disc.

2. Insert the disc and let the SFC utility run

3. SFC will check/repair changes made to the main system files.



How to fix error messages.

Go to Start > Run > type cmd > Hit [ok]

1.Type chkdsk /f Hit enter and press "y" for yes and let it run.

2.When it's done restart your computer.

Go here for more help.

http://aumha.org/a/stop.htm



P.S.:If you need more help feel free to click on my name under my avatar and email me?



Stay Safe Out There (^.^)
?
2016-08-21 19:55:46 UTC
2
anonymous
2009-09-06 04:12:44 UTC
you need to install DUmeter and see the effect . you can analyze each port with this.



some very small features of DUmeter



* Provides clear graphical and/or numerical display

* Reporting facility with export to many different file formats, including HTML, Excel, PDF and others

* Permits close supervision of uploads and downloads

* Compatible with all network interfaces: Dial-Up, Cable, ADSL, Ethernet, and others

* Fully compatible with Windows Vista, Windows XP, Windows Server 2003 and Windows 2000

* Requires minimal screen real estate and system resources

* Involves no changes to your Windows system files

* Auto-hide feature minimizes the meter to the system tray in the absence of network activity

* Option to notify user or disconnect from the Internet automatically when network activity drops below a certain level

* Useful stopwatch to accurately time downloads and report the average transfer rates
vlj2002
2009-09-04 09:05:00 UTC
Use combofix from bleepingcomputer.com to remove the virus and use malwarebytes either from malwarebytes.org or softpedia.com to remove other virus and clean the whole system up with superantispyware from superantispyware.com. Use a firewall to protect your ports such as Online Armor or outpost firewall with a good antivirus such as avira or kaspersky
Techno
2009-09-04 08:39:02 UTC
Download, install, update and run full scans in safe mode* with these programs...



http://www.malwarebytes.org

http://www.superantispyware.com



Then re-start.



*Note: On start up (before Windows loads) keep tapping either F5 or F8 then use arrow keys to highlight 'Safe Mode' click on a user account, enter the password (if you don't know it, there probably isn't one so leave it blank) and hit enter/return.
anonymous
2016-09-18 03:43:48 UTC
in case you operating at the server simply get webmarshal and set out web regulations,, you're correct limewire is a significant virus fest hog get a application if you want to track knowledge switch at the community and block a few facets like streaming, downloads and son


This content was originally posted on Y! Answers, a Q&A website that shut down in 2021.
Loading...