I recently found out that some serious threaths can install themselfs and run as proccesses with names of other well known proccesses like the svchost.exe proccesses which are ussually more then 1.Since there are some that even BD can't find i was wondering how can i find out which are actually viruses worms or trojans and which proccesses are actually legit?I am currently using WinTasks Pro 5 but even with this tool,which shows the patch of the proccess among other things,i still don't know if i should trust a proccess or another.Anyways the majority of trojans try to use the net so i was wondering how can i stop attacks by carefully choosing which ports to open and which ones to close for a aplication?
An example of proccess which i don't trust:C:\Windowse\system32\svchost.exe or C:\Windowse\System32\svchost.exe(i don't know which one is legit).About ip ports i know that worm blaster for example uses some specific ports to take over your net.All my concern is dat although i have BD AV vs 10 Plus my net lately started degrading more and more giving me ping values i never experienced before.
My OS is Windowse XP Pro,with net framework 2(and net framework 3 installed at the same time,btw is dat normal?),and i have cable connection and i'm using a PPPOE(protocol???) firewalled.Any advice on how to make my system more safe and make the net go back as it was a month ago?