As an asp.net programmer, and an IT engineer at a Small Business, sometimes I must setting our network and make our network in office running well.
Yesterday, at my office, on administration computer suddenly restart, and on the screen notify there are spyware on that computer.According to
my experience, sometimes the virus it's self that told for virus notification, except the anti-virus.
When I check the application at event viewer in past day, I found some error message when computer running an application. So i suggest that file cause the problem. Then I goto registry file with regedit command, and move to HKCU-Software-Microsoft-Windows-CurrentVersion-Run,
and found a file that suspicious. After update Anti-virus and scan yea there is a backdoor file on this computer. Then suddenly our anti-virus send notification that our suspicious file that we found in registry file need Internet access. So I suggest that file is the virus. Then I go to location of that file (Windows/System32/lphdcn8nj0e561.exe) and try to delete, but I can't delete that file. I though "It's must in save mode". So I delete that file on save mode.
But the problem still happen I must correction some registry which changed by virus. I repair registry to process display property because desktop and screen server tabs gone. After fixed the registry and I found that file run a file called "bluescreen" screen server. Blue screen server act as restart a computer, but this just screen server. The real virus is a backdoor.
That step-step to find virus and how to cure the computer sound complex. We should protect our computer before our computer attacked by some virus or intruder. For protect our computer we need learn about computer security system. We can read some books, participate on learning center or take a certification program.
For more information about computer security you can join with other IT professionals in Cisco learning network, you can browse technical content and connect and share insights, opinions, and knowledge with the community. To enhance and advance your IT career you can take some
Cisco certification program. There are many choice at Cisco certification program. IP Networking (CCENT),Routing and Switching (CCNA),Security, Voice (CCNA Voice),Wireless (CCNA Wireless),Service Provider (CCIP),Design (CCDA).
Sometimes skill and knowledge must proved by certifications. Some one with certification more credible than other without certification. Today certification needed for IT consultant or IT Professional for their career.
And Cisco certification have good reputation they already gift . If you an IT manager which person do you choose some one with certification or without certification if they apply in your office? I will choose person that have
Cisco certification. How about you?
As my experience above network security is important for business. Imagine if backdoor or attacker can access some secret file and credential file on or office, how much cost will spend?
