Discuss Scanning a GoFlex drive (NAS) for Malware? in the Networking forum on Dev Hardware. Scanning a GoFlex drive (NAS) for Malware? Networking forum discussing setting up network printers, Wi-Fi, GigaNet, 802.11, Ethernet, T1 and T3 connections, routers and firewalls, NICs, IP addresses, DNS errors, and troubleshooting networking problems.
ASP Free and Iron Speed Designer are giving away $5,500+ in FREE licenses. Iron Speed's RAD CASE toolset can save up to 80% of your coding time. One free license per week, one perpetual license per month!
Receive the tools necessary to be the rock star of your field. Our 12-month program teaches you the evolving world of multi-channel marketing as well as the complex issues and opportunities found in the industry.
The ASP Free website provides in-depth information on the latest developer tools available from Microsoft. Our cadre of writers, highly experienced industry experts, reveals the best ways to use established technologies as well as new and emerging technologies. Our coverage of Microsoft's development and administration technologies is among the most respected in the IT industry today. .
Location: Centrally located in the middle of nowhere, CA
Posts: 9,250
Time spent in forums: 10 Months 3 Weeks 2 Days 14 h 3 m 34 sec
Reputation Power: 17383
Scanning a GoFlex drive (NAS) for Malware?
I have a 2TB Seagate GoFlex drive attached to the home network that may be infected with conficker worm. I have it turned off at the moment, waiting for me to scan it before letting anyone access it again.
What's the best (cheapest, easiest) way to scan it for malware?
"In front of a monitor is a dangerous place from which to view the world." --Terri Wells
Enable BSOD: Control Panel/Systems, Advanced Tab, hit the Settings button under Startup and Recovery, and under the System Failure area, uncheck the Automatically Restart checkbox.
Before you start, check your browser to make sure it's not infected. Then run the Malicious Software Removal Tool. If you want to be extra thorough, there are several other tools that detect and remove it as well.
If you need to, you can disable the Server and Computer Browsing services and block TCP ports 139 and 445 in your firewall to prevent the worm from spreading anymore while you are removing it.
Finally, don't forget to patch your systems to prevent them from getting infected again.
__________________ Don't like me? Click it.
Scripting problems? Windows questions? Ask the Windows Guru!
Posts: 4,117
Time spent in forums: 1 Month 1 Week 2 Days 10 h 25 m 41 sec
Reputation Power: 16063
Also give Microsoft Standalone System Sweeper a try. It's a bootable application that runs in Windows PE so all the scanning is done without any open files. I used it on a PC that was infected with a virus on the MBR and removed it very easily. I'd give it a try.
__________________
How much net work could a network work, if a network could net work?
Location: Centrally located in the middle of nowhere, CA
Posts: 9,250
Time spent in forums: 10 Months 3 Weeks 2 Days 14 h 3 m 34 sec
Reputation Power: 17383
Quote:
Originally Posted by Sand Man
Also give Microsoft Standalone System Sweeper a try. It's a bootable application that runs in Windows PE so all the scanning is done without any open files. I used it on a PC that was infected with a virus on the MBR and removed it very easily. I'd give it a try.
I used that on my daughter's machine, and it helped me at least get in the door. The varieties she had on hers included cleanddm.exe, which would restore itself after I removed it, so I had to hack the registry to turn off scheduler and system restore, use HijackThis to remove the offending material, then turn schedule and system restore back on so I could update the OS.
But the NAS drive is only a 2TB drive with fancy software from Seagate-- no external drive or even USB to boot off.
LOADING INFUSIONSOFTLOADING INFUSIONSOFT 1debug:overlay status: OFF overlay not displayed
overlay cookie defined: TI_CAMPAIGN_1012_D
OVERLAY COOKIE set:
status off