CyberDefenseGuide
A How-To Guide To Internet Security and Windows Repair


Internet Security Windows Repair
Foreword
Malware Introduction
Symptoms of Malware
Causes of Malware
Backup
System Recovery Disk
Restore Point
Antivirus
AntiKeyloggers
Uninstalls
Antivirus Scanners
Advanced Scanners
Leaktesting
Firewall
Batch Files
Windows Update
User Accounts
Passwords
Browsers
Hosts File
Internet Speed
Parental Controls
Performance
How To Repair Your PC
Hardware Faults
Cleanup
Virtual Memory
Defragment
Chkdsk
System File Checker
System Restore
Safe Mode
System Recovery
Recovery Console
Event Viewer
Windows Services
Batch Files
References
Remotescan          Remote Virus Removal and Security Maintenance Service          Remotescan



Leaktesting


 The best test to see if your pc is safe from cyber attacks is to run a Leaktest.

A Leaktest checks to see if your firewall is protecting vulnerable areas from cyber attacks.
 It tries to attack your pc using the same methods as malware, simulating rootkits, invasions, hijacking, impersonation etc, and if your firewall is any good it
blocks every attempt. If your firewall fails an attack test then it's time to tighten up your firewall settings. If it still fails then it's time to get a new firewall.

Check the settings/configuration of your firewall to see if you can, at least, stealth your ports; increase types of detection; enable protection on buffer overflow,
ARP cache, registry, memory; block applications that aren't digitally signed; monitor processes, hooks, drivers, DNS/RPC client, keyboard, etc.

For indepth research into your firewall's vulnerabilities visit MatouSec where they list the types of cyber attack you should test your defenses against.

If only have Windows Firewall protecting you be aware it is not enough by itself, it fails all leaktests in several key areas.


Download Comodo LeakTest

 Use this to test a new installation of Comodo Personal Firewall. However, you can use it to test a pc running a different firewall. If it fails
When you run CLT your firewall should pop up a warning. it means your firewall is capable of detecting that type of cyber attack. Click Block or Deny and
the leaktest will display 'Protected' for each test. Note- if you have a realtime antivirus monitor then it should give you a virus warning when it encounters the
leaktest file CLT.exe , you can safely allow it to run initially, just block each of the tests to get an accurate result.


Download Comodo Parent Injection Leak Test Suite

The CPIL suite contains three separate tests especially developed by Comodo engineers to test a firewall's protection against parent injection leak attacks.
Each of the three tests involves the user typing some random text into a text box which CPIL will attempt to transmit to the Comodo servers.


Download Microsoft Baseline Security Analyzer (MSBSA)

Choose MBSASetup-x86-EN.msi for normal 32-bit XP,Vista,7
Choose MBSASetup-x64-EN.msi for 64-bit XP,Vista,7
 MSBSA scans your pc for security vulnerabilities. It checks your settings for Windows Updates, Windows Firewall, password strength, guest account,
excessive Administrators, remote access, unnecessary services, file sharing, IIS and SQL issues. To work, it requires the following services to be started:  Workstation, Server and Net Logon. To switch these services on run MSBSAOn.bat, when you have finished leaktesting run MSBSAOff.bat unless you
use these services, normally they are not required for a home pc. Your also need to be connected to the internet to test your Windows updates status.
To begin a scan with MSBSA click Scan A Computer, under Computer name: enter your Workgroup name and the computer's name. You can find these
by rightclicking My Computer (from the desktop or Start menu), select Properties then click the Computer Name tab. Type the names into MSBSA in this
format:  workgroup/computername (e.g. mshome/nicholas). When the scanning has finished go through the results and follow the advice under
'How To Correct This' for each vulnerability detected. This may be as simple as creating a password, switching on Automatic Updates or deleting
an unused user account, however certain issues like SQL Server vulnerabilities may need indepth analysis to solve.


DOWNLOAD  Sophos Endpoint Assessment Test

Checks that your Microsoft service pack is the current one for your operating system, that your Microsoft patches are all up to date,
that antivirus protection is installed, running and updated, and that a personal firewall is installed and running.


PCFlank Online Leaktest 

Determines if a Trojan horse already infects your system and if your Web browser reveals personal info about you or your computer while you're web surfing.

Secunia PSI

Detects vulnerable and out-dated programs and plug-ins which expose your PC to attacks.


©Helptree Services 2010