Home Index Search Directories Faq

What To Do If You Think You Have A Virus

1.    Don't panic! 

2.    Virus Notification Pop-up : Did you get one?
  1. If so, copy all the information in this box. This is valuable information like the type of virus and file name. You will need it in order to clean the virus off of your computer.
  2. If not, why do you think you have a virus? Run a scan and see if anything is identified.
3.   Make sure you have the latest definition files . Antivirus software must be updated to work properly.
  1. Open Symantec - Double click on the little golden shield (usually in the lower right corner of the screen near the clock).
  2. Click the button labeled “LiveUpdate” to get the latest definitions.
  3. The definition file date is listed in a box labeled" Virus Definition File". The version is the date of the file. This date should be no more then 3 days old.

4.   Disconnect the computer from the network. Do this by unplugging the network cable from the back of the computer. This will prevent the virus from spreading to others on the network. The computer should remain unplugged until the computer is cleaned.   You may have to transfer any files or cleaning tools to the infected machine by disk, CD, or flash drive.
5.    Find cleaning instructions by going to http://www.symantec.com/search/ and look up the information on your infection. Search for the virus by the name you copied from the pop-up in step 2.

6.    Follow the instructions. Symantec gives very detailed, easy to follow instructions. Print the page and work your way through them one by one.

  1. If the information page provides to a removal tool (a small program you download and run) to clean your computer from, use it. This is the easiest way to clean your machine.

  2. If no removal tool is available, then you will have to clean it manually. Most manual cleaning instructions involve dealing with the Windows Registry. If you are not comfortable using the Windows Registry, then it is strongly advised that you call a professional to look at your machine. You can do serious harm (i.e. you will need to format the drive and reinstall windows) by editing the wrong thing in the Windows Registry.

7.   Verify that the computer is cleaned. Once the computer is thought to be clean, follow these instructions to verify.
  1. Reconnect to the network
  2. Reboot in "safemode with networking"
  3. Run an online scan. This will pick up anything Symantec might have missed. It is always a good idea to run multiple scans on a computer, because no one scan is perfect. If the online scan did find something then call the computer services center and inform them of the situation.

 
 
Webmaster:  Patrick
University of South Alabama - Mobile Alabama 36688-0002 / 1 (251) 460-6101
For questions or comments Contact Us
Last date changed: July 12, 2005 10:02 AM
http://www.southalabama.edu