Installing a regularly-updated antivirus tool will ensure you're protected against most malware, but no security suite is 100% effective, and of course they're all vulnerable to the very latest threats. So if your PC is behaving strangely and you think you might have been infected by something nasty, but your antivirus tool says otherwise, then you need another way to explore what's going on. And we've the perfect candidate.
Launch Process Hacker and at first it looks like a more colourful version of Task Manager, with details on all the processes running on your PC. And you can use it in much the same way. Click Hacker > Show Details for All Processes, then scroll down the list, looking for any process name that seems unfamiliar.
Spot something unusual, though, and you can start to take advantage of Process Hacker's extra features. Right-click a process and click Search Online, for instance, and a browser page will open with the results of a Google search for that process name. If it turns out to be an innocent application, then that's good news. But if you discover that it might be malware, then right-click the process again and select Miscellaneous > Upload to VirusTotal. The site will scan it with more than 40 antivirus and security tools, and you'll see another browser page open where you can read the results.
If you're still suspicious of a particular process, then double-click it for more information. The General tab provides basic information like where the process is stored. Clicking the Handles table will show you any files or Registry keys the process has open, often a useful clue as to what it might be doing. And best of all, clicking Memory > String Scan will search the processes RAM for any text strings and display the results. These vary depending on how the process is coded, but generally you'll see file names here, text prompts, copyright messages, internet addresses and anything else embedded in the program, all very useful when you're trying to figure out whether this is a legitimate process or not.
If manual searches alone don't reveal anything then Process Hacker has a couple of other options that might help. Click the Network tab, for instance, and you'll see all the processes that currently have a network connection option. The Remote Address column will highlight any internet connections, and you can even find out who owns the remote address by right-clicking the relevant process and selecting Tools > WhoIs.
And if you click Tools > Hidden Processes > Scan then Process Hacker will try to locate and highlight any processes that might be trying to stay out of sight. There are two ways of doing this, so if the default "CSR Handles" method doesn't work, try Brute Force instead. This isn't quite as reliable (we found it highlighted GoogleUpdate.exe once) so don't panic if it picks something up. Rather, run the Brute Force test a couple of other times, then apply the tests mentioned above to confirm that this really is malware.
download vlc media player on cnet
download gimp 2 6 dowland
download devil hunter x 320x240
download game angry birds season 2 full version for pc
download avira antivirus updates 2011
download ios 4.2 1 for iphone 3g
download quicktime for windows xp sp2
download fraps full version 3.2.3
download mindflow break me out
download sony ericsson pc suite u1i
download russian keyboard for windows vista
Комментариев нет:
Отправить комментарий