How to detect / clean a possible Botnet?

Hello, I just got a message from Time Warner Cable today telling me that they "detected signs of the botnet traffic being transmitted from a device connected to the modem cable to your connection Internet of Time Warner Cable."  I really hope they are wrong.

I have 3 macs here on El Capitan, a Time Capsule and an airport express and a couple of Apple TVs/ipads/iphones and an Epson printer. I concentrate on macs... and I was wondering what is the best way to go about detecting and deleting everything that belongs to this botnet? It is my understanding that the bots are not viruses... or a simple anti-virus program work?  I never trust one of these programs and has always considered to be incomplete or part of an alarmist tactical cash grab. Also, I didn't have a program hogging resources analysis of the computer all day all the time like I used to have, on a machine windows, some time ago. But if I really have to in this case, I want to know what the Mac Pros use when there is a problem of any kind like that.

I mainly use a machine and it was at one point yesterday with a more than the usual CPU. Incidentally I'm briefly to the preferences window security and privay on the mac about 30 minutes ago and initially it would not open. I got an error message saying something like "it wasn't available" or something to that effect. I had to run several times before it would open successfully.

Until someone asks:

1. Yes, I have a password long enough complicated WiFi (WPA2 I think)

2. I don't see anything else on the network, except the devices here

3. all devices are updated to the latest OS

4. none have any sort of anti-virus installed

Are you sure that the e-mail claiming to come from TWC is authentic and not a phishing attempt? Are Web sites, you should really visit sites of Time Warner, for example if so...

I agree with your attitude to antivirus programs, steer well clear of them. Installation AV does not solve a problem on a Mac, it gives you another problem.

Are you running torrents?

Activity Monitor allows you to check the amount of network traffic and try to identify the responsible process by looking at the bytes sent/received columns.

C.

Tags: Mac OS & System Software

Similar Questions

  • How to upgrade to iOS 10 as 'clean' as possible without losing the data in the App

    Hey guys,.

    iOS 10 is around the corner and, therefore, I wonder now how I can improve my iDevices (5s, 6, Air 1, mini 2) as clean as possible, i.e., ideally without the remains of previous versions of iOS, while keeping all these backups of Angry Birds and iMessages. This used to be no problem because I would just do a restore DFU, "Set up as new iPhone", install all the applications manually and restore the backups and iMessages by iExplorer. Then Apple removed the app data access in iOS 8.3 and above, who killed this option

    Since iOS 8.3 I have upgraded to major releases by removing your existing backup and creating backups completely new immediately before executing a DFU restore to the new version, and then reloading your backup come on my device.

    However, I am sure that this leaves still unwanted remnants of installed earlier, I really want to get rid of (so my devices also perform smooth and free of bugs as possible, with as much free space as possible). One of my ideas to get there is to delete all applications without data important app and 'Reset settings' before creating a fresh backup, do a DFU restore, restore the backup and finally reinstall and reconfigure the previously deleted applications.

    Does make sense? That guys would you recommend?

    See you soon,.

    Daniel

    Please read iOS 10 - official Apple Support.

    However, I am sure that this leaves still unwanted remnants of installed earlier.

    Is not, is there a need or benefit to the removal of the existing iCloud backups.

    You're overthinking not too much of the case. There are only two basic steps: backup and update. If you have an Apple Watch, follow the third stage also: update your Apple Watch. That's all there is to it.

  • How can I clean my files?

    I do not have a disk, how do I clean the files that I have to get rid of to speed up my laptop? Brand "Lenovo"?

    Can someone help me please?

    Susan

    What version of Windows do you have?

    A better program of disk cleanup is cCleaner. cCleaner comes with a registry tool. Do not use this tool as any registry cleaner could lead to the creation of very difficult to resolve system errors.
    http://www.CCleaner.com/download

    1.9. When you open cCleaner you will see four large icons to the left of the window. Here's cleaner them, registry, tools, and Options. For routine maintenance, you normally acceding Cleaner (this is not the mentioned registry cleaner later). When using for the first time only, you can accept the default settings.

    1.10. some observations on the parameters. On my computer, I do not have the boxes before the passwords saved selected. In a less secure environment, you could check this option and set cCleaner to run automatically when the computer starts. You also cannot check the boxes in front of shortcuts from the Start Menu, desktop shortcuts and historical form. You must check the boxes according to your needs. Bad first time options causes irritating no disasters.

    1.11. the second icon that you see when you open cCleaner's registry. A reserve many experienced users have about cCleaner, it's that it comes with a registry cleaner. This tool should not be used. By using a registry cleaner, but it is the case, provides significant benefits and there is always the risk of creating insoluble system errors, which cannot be resolved by reinstalling the operating system and all that that implies. You will avoid any possible problem of not not by clicking on the Save icon.

    1.12 the third icon that you see when you open cCleaner is tools. If you click this icon, it gives you access a routine plus service options. The first two tools are uninstalled and commissioning. I do not use these tools, preferring to use other software options. The third tool is the restoration of the system, which is covered in the next paragraph. The fourth tool is Wiper Drive and you will find reviews about this tool later

    1.13 removing the system restore points can be important if you have little free disk space. The ability to delete them is one of the tools options. You can selectively remove those created in less important moments. This makes it easier to hold the restore points for long periods without keeping large unwanted files, whose inflexible approach to disk cleanup fails to offer.

    1.14. you can't remove the last restore point using the cleaning disc or cCleaner. If the last restore point contains malicious software, you can turn off and then turn on system restore. This has the disadvantage that restore all points are removed when you want to keep more restore points that are not infected. How to get round this problem is to create a new restore point when you are satisfied with your computer is free of malware and then remove the infected restore point.

    1.15. in normal circumstances, you probably rarely need to use Driver wiper. However, there are situations like if you gave the computer to someone else, then the tool may be useful. Please note that the wiper Drive, opening, generates a warning message, which should not be dismissed lightly. Using wiper Drive for the wrong reason could have serious consequences.

    1.16 the fourth icon is labeled Options. Many configuration options are available here. You can configure cCleaner to run when start you but remember that this will slow down the boot. Another setting allows you to include or exclude cookies. Yet another allows files named to exclude.

  • How to detect if RTEXE is running on the controller RT SMU-8133

    Hello

    I need to know my PC if some executables RT runs on the remote computer RT (SMU-8133).
    Y at - it anyway how to detect in LabVIEW, if an application is running in real time and possibly only one?

    Thank you very much.

    Martin

    The important point is that call a distance VI in this way, you assume that the VI is already in memory. In this case, you don't have to give a full path, just the name of the VI.

    Mike...

  • Checking file system on C: the Type of file is NTFS. The Volume is dirty. -What this means and how do I clean the Volume, please? My computer is Dell XPS

    Recently, when I turn on my computer is starts, guests of the computer and starts check my system files as follows: "checking file system on C: the Type of the file is NTFS. The Volume is dirty. "That is what this means and how can I clean and maintain the clean Volume, please? My computer is Dell XPS

    The computer system continues and invite "CHKDSK checks the files (step 1 of 3)... .

    The system deletes some files and at the end of shows, complete audit files and then show

    CHLDSK is verifying indexes (stage 2 of 3)...

    Once again, it shows the following:

    Deleting Index Entry _64280 ~ 1. jpg in index file 4632 $130

    Deleting Index Entry _64280552_little-mix_211112_get [1] .jpg in index file 4632 $130

    Deleting Index Entry 69gw [1] .jpg in index file 6722 $130

    Remove entries of Index 69 GW_1 ~ 1. jpg in index file 6722 $130

    Deleting Index Entry _64274754_messi_211112_elvis [1] .jpg in index file 6722 $130

    Deleting entry Index _64274 ~ 1. jpg in index file 6722 $130

    Finished the index checking

    CHKDSK is checking security descriptors (stage 3 of 3)...

    100%

    CHKDSK checks usn Journal...

    Windows control disc is finished.

    After all checks, Windows proceed to start as usual.

    I would like to know if I need the dirty Volume, and if so, how can I carry out the cleaning operation.

    Sometimes, at the early stage of the CHKDSK, the computer makes a pe. .. PE... noise and cut.  Then I turn the computer off via the key of the insulation. When I restart the computer, it then runs the check again until the end.

    Please advice me on the following points:

    1 is this normal as he started only happening in recent weeks?

    2. How can clean the Volume in order to show "Volume is clean instead of sale"

    I look forward to hear from you.

    Thank you

    Hi, Dr.,

    Volumes that contain file system errors are known as Sales. To indicate that a file system problem has occurred and that the volume is dirty, Windows XP Professional displays a message similar to the following when you try to open, delete, or rename a file or folder by using Microsoft Windows Explorer or the command prompt:

    Autochk runs if the volume is marked as modified.

    If the file system has marked the volume as dirty, Autochk runs the Startup Repair process. Volumes are marked as dirty, when the file system detects an error on the volume. If Autochk detects a dirty volume, it provides a delay of 10 seconds, and then starts the repair process. If you cancel Autochk when a volume is dirty, Autochk tries to run again after a 10 second delay every time the computer is restarted.

    See Chkdsk for all the necessary explanations:

    http://TechNet.Microsoft.com/en-us/library/bb457122.aspx

    Run the Dell Diagnostics to check the drive failure.  If the disc is a failure, it must be replaced.

  • How to detect what causing my hard drive space increase?

    Hello

    My space on the hard disk increases daily 100 MB how to detect the causes of this increase in my hard drive.

    Thanks for your help

    Hello

    My space on the hard disk increases daily 100 MB how to detect the causes of this increase in my hard drive.

    Thanks for your help

    Can be any number of things.  One possibility is the restoration of the system, which, by default, uses up to 12% of your hard drive.  An older version of Zone Alarm (6.5) creates very large files which have been followed by SR (http://bertk.mvps.org/html/tips.html#16 ).  In general, the default should be changed so that the space allocated to the SR should be limited to 1 GB (seehttp://bertk.mvps.org/html/diskspace.html ).

    Rather just guessing, download and run (free) JDiskReport , allowing you to know what is too much space.  Once you know, after return to get advice on how to deal with it.

  • How to detect if the page is a reload or not?

    I have a form in the cfm page if the user submits the form, I don't want to go to another page. I want to reload the page and I'll capture all values and send the data in this way. However, I need to hide the form once the user submits the form. So, how I detect if the page is a reload (after is submitted) or it's the first time it is been charged?

    You can manage only two ways.  One, add a hidden field to the form that passes a value, then check if the value exists in the URL/FORM variables (if it exists, the page is reloaded by sending the form - if it does exist, it's the first load of the page).

    Perhaps a better approach would be to manage the form via an AJAX request is sent, and then hide the form if the AJAX request is successful.  This all is possible using JavaScript.  The advantage is that the user leaves the page never actually or it recharges.

  • How to detect Flash version version in Javascript before the Flash?

    Versions of flash player are in the format: Major.Minor.Release.Build

    Many sites use the SWFObject javascript library to detect the installed version of Flash player.

    The SWFObject tool is only able to detect the drive installed Major.Minor.Release version numbers.

    It is not able to distinguish the Build number.


    Recent security patches are only increment the version number, is not possible to ensure that the user has a version that is installed without danger.

    The SWFObject detection occurs BEFORE the FireFox browser version detection, so we could show a more user-friendly message "Please update your Flash" for users.


    How to detect Flash version version in Javascript before the Flash?
    Or Adobe would be kind enough to increment the version when the critical security patches are made?

    var a = navigator.plugins;

    var dllfname;

    If (0< a.length)="">

    for (var d = "", b = 0, g =.) Length; b< g;="" b++)="" if="" (-1="" !="a[b].name.toLowerCase().indexOf(" flash"))"="">

    dllfname = a [b]. Filename;

    }

    }

    $parts = dllfname.replace(".dll",_"").split ("_");

    $buildnumber = parseInt($parts[4]);

    This will get the build number of the dll file name string and can be concatenated with swfobject.getFlashPlayerVersion Major.Minor.Release version numbers ().

  • How can we clean inside them FlashBuilder?

    I'm working on a project. Everthing worked fine... except that I started to realize that things do things he's not supposed to for example if I add a button (single button). It does not appear during execution. I then started to remove the code to create a runtime error, but during the execution of the project works 100%. The net result is, I can't do something for the project because the result is always the same?

    How can we clean hiding them?

    Can someone tell me please?

    Dimitri

    Caches are empty when project you-> Clean.

    Turn the project-> 'Build' automatically off and using the project-> Build manually fix your problem?

    A large number of modules you use? Would it not possible to share your project?

    Note: A common scenario when the changes are not seen in output is when your class/MXML file is not used by one of the modules of the project applications (projects are not affected by the present library). In this case, the compiler ignores the file, which looks as it did not pick up your changes.

    -Remy

  • How can I clean my system?

    Over the years I have accumulated many files, with many pictures, scattered through my main drive.  I really need to clean house, but I don't know how.

    Is it possible to explore all the pictures on the disc and compare them against all the photos in my organizer, to determine which are already in the organizer and which are not?

    I would have preferred an automated procedure if possible, but if not, can someone please tell me how to do it manually?  I'm still in PSE 4.0.

    Thank you very much
    Zapatero

    The general idea of the workflow could be:

    1. -use the Organizer to move the files catalogued to a new location on the computer or another DHM,
    2. -pictures "not cataloged" would remain in place and may be reviewed and processed later.

    For the first step, it is a removal tool in the Organizer. I never had any problems with it, but others have reported problems. If you choose, try to make records rather than of the whole 'My images' moving...

    But I recommend rather a backup, then restore to a new location. The problem of .tly missing perhaps prematurely due to the interruption of the process. It is written at the end of the process. Be patient and wait, even after the completion message, until the organizer was receptive again. If you can see the .tly, you're safe.

    With this backup, you are safe, and for maximum security, you can restore the catalog elsewhere under a new catalog name to be 100% sure.

    When the catalog is restored elsewhere and checked, there is no risk to erase all the images from the Organizer. You can do this for the entire catalog (select all Ctrl A and delete with "also delete disk") or files if you prefer.

    The second stage (cleaning) can be done either by the Windows Explorer with the Organizer, and you are in no hurry to do so.

    If you choose the Organizer, create a new temporary catalog and import what remains in significant folders such as "my pictures". This will help you remove unwanted images and maybe spend the good remaining to a new folder for ulterior easier import in your catalog restored.

    The final step after cleaning, reimport the remaining files on the restored catalog. The organizer can find duplicates that it won't matter, but do not count on it.

  • How can I clean my Cache profiles Local file?

    I have very few things in my Inbox, Archives, drafts and sent boxes - some MB - but the profile is 97 MB. How can I clean the profile - get rid of the useless things - while it is much smaller in size? If I delete the profile, it will regenerate?
    Well thanks for your help! David

    If you want to get rid of all hides
    Tools / clear recent history who will do

  • How to safely clean lint or dust from my iPhone charger port 5?

    How to safely clean lint or dust from my iPhone charger port 5?

    ThreeJay,

    Here are a few tips. It is important to note that Apple recommends not compressed air.

    If none of this works for you, and you are experiencing load problems, take the FSAA or Apple Store.

  • How can I clean my mac? Is there a good program?

    How can I clean my mac of junk? Is there a good program?

    To get rid of what junk do you want?

  • How can I find out if there are viruses on my laptop and how do I clean them

    How can I find out if there are viruses on my laptop and how do I clean them?

    Please provide details as to why you feel that there is a virus on your computer.

  • How diassembly to clean the Satellite C660

    Hello

    I have toshiba C660-1u1.
    I want to know how disaseembly to clean the processor and the fan.
    A manual disassembly or step by step.

    Concerning

    Hello

    I would not recommend to disassemble the laptop only to clean the fans.
    Disassembly is delicate and you will lose the warranty.
    But it is important to know that you can clean the fans using a jet of compressed air. It's good enough to get dust and debris removed cooling modules.

    This could be interesting, too:
    + How to clean a Toshiba laptop cooling system +.
    http://APS2.toshiba-tro.de/KB0/HTD7A01ZZ000AR01.htm

Maybe you are looking for

  • Need drivers for Satellite A30 USB

    HelloI use the laptop satellite a30 with win xp, I lost my recovery CD and I can't download the driver usb on toshibas website.Please help me pleasegreetings and loveToyGun tek

  • Satellite C660 - 25 c - how to calibrate the battery

    Hello First of all, I apologize for my bad English. I would like to know the procedure to calibrate the battery of my Satellite c660 - 25 c. Thank you Sincerely, romat1993

  • Annoying beep when PIN unlock, unsilences too

    My Droid Turbo will beep loudly I unlock the phone with my PIN code. It also changes the mute my phone to / strong ringtone no matter what. Why? and how to change it, it is driving me crazy. Especially if I'm somewhere where the phone needs to be sil

  • Turn off the requirement of ID and network password

    My Workgroup network has a computer that are not accessible by other computers on the network without providing a user name and a password. We have never set up a password requirement. How to I disable this option? Computer uses XP

  • How to connect HP to LP computer smart tv with cable

    I have a WiFi connection, but it seems slow. want to connect to the LG smart tv using a cable. Need to know what kind of cable and the connection on the smart tv port.