Finally back!

DreemWarrior

New member
Pro User
Local time
7:17 AM
Messages
521
Location
Under Da Sea
Hey everybody!
Wow, it's only been a week since my network was intruded upon, and I havent been in here-or elsewere for that matter-since then.
It feels like much longer!. Anyway, I utilized that time to learn all I could about networking and network security.(havent even scratched the surface, I know) BUt suffice it to say I remedied the situation and dont think that will be an issue( of that magnatude) again. I just wanted to thank all those who shared and helped me with it. I missed you guys*sniff*:p
You know, I didnt realize just how many PW I would have to change due to all this. What a PITA!( I never use the same one twice)
Oh, well. Alls well that ends well.:)
 
Last edited:

My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 ultimate X64
CPU
Core i7 870 Lynnfield
Motherboard
MSI P55-GD55
Memory
4GB Corsair XMS 3 1600Mhz
Graphics Card(s)
GeForce 8800 GTS (for the time being)
Sound Card
Onboard 7.1 digital
Monitor(s) Displays
Dell 19"
Screen Resolution
1280x1024
Hard Drives
Barracuda 750Gb
PSU
Corsair TX 650w
Case
Thermaltake Armour Extreme Edition
Cooling
Corsair H50
Keyboard
Dell XPS slim
Mouse
Dell XPS mouse (only good product)
Internet Speed
100 Mbps +/-
Welcome back Joey. :party:

I sure hope that you will not have any more security breaches again.
 

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Self built custom
OS
64-bit Windows 11 Pro for Workstations
CPU
Intel i7-8700K OC'd to 5 GHz
Motherboard
ASUS ROG Maximus XI Formula Z390
Memory
64 GB (4x16GB) G.SKILL TridentZ RGB DDR4 3600 MHz
Graphics Card(s)
ASUS ROG-STRIX-GTX1080TI-O11G-GAMING
Sound Card
Integrated
Monitor(s) Displays
2 x Samsung Odyssey G7 27"
Screen Resolution
2560x1440
Hard Drives
1TB Samsung 990 PRO M.2,
4TB Samsung 990 PRO PRO M.2,
TerraMaster F8 SSD Plus NAS
PSU
Seasonic Prime Titanium 850W
Case
Thermaltake Core P3
Cooling
Corsair Hydro H115i
Keyboard
Logitech wireless K800
Mouse
Logitech MX Master 4
Internet Speed
2 Gb/s Download and 100 Mb/s Upload
Antivirus
Malwarebyte Anti-Malware Premium
Browser
Google Chrome
Other Info
Logitech Z625 speaker system,
Logitech BRIO 4K Pro webcam,
HP Color LaserJet Pro MFP M477fdn,
APC SMART-UPS RT 1000 XL - SURT1000XLI,
Galaxy S23 Plus phone
Welcome back Joey. :party:

I sure hope that you will not have any more security breaches again.

Thanks Shawn. You and I both. I never thought networking/commands could be so...interesting. :) I think I'll be doing most of my work on systems VIA cmd prompt from now on!
 

My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 ultimate X64
CPU
Core i7 870 Lynnfield
Motherboard
MSI P55-GD55
Memory
4GB Corsair XMS 3 1600Mhz
Graphics Card(s)
GeForce 8800 GTS (for the time being)
Sound Card
Onboard 7.1 digital
Monitor(s) Displays
Dell 19"
Screen Resolution
1280x1024
Hard Drives
Barracuda 750Gb
PSU
Corsair TX 650w
Case
Thermaltake Armour Extreme Edition
Cooling
Corsair H50
Keyboard
Dell XPS slim
Mouse
Dell XPS mouse (only good product)
Internet Speed
100 Mbps +/-
Wow, I read your other thread, what happened? Care to share?

zzz2496
 

My Computer

Computer Manufacturer/Model Number
Self Built
OS
Windows7 Ultimate 64bit
CPU
Intel Core 2 Quad Q6600
Motherboard
Abit IN9-32X-MMAX
Memory
DDR2 Adata 4GB
Graphics Card(s)
Nvidia GeForce GTX 285 1024 and Nvidia GeForce 8800GT 512
Sound Card
Asus Xonar HDAV 1.3
Monitor(s) Displays
Dell 2407WFP and BenQ 2400v and Philips 150v3
Screen Resolution
3840x1200 and 1024x768
Hard Drives
2 WDC 1TB
1 WDC 1.5TB
1 WDC 640GB
1 WDC 320GB
1 Seagate 200GB
PSU
Corsair TX 850W
Case
Cooler Master HAF932
Cooling
Arctic Cooling Freezer Extreme and plenty of fans...
Keyboard
MicrosoftNaturalKeyboard 4000/Apple Alu keyboard/Dinovo mini
Mouse
Logitech G5/MarbleMouseTrackball/PerformanceMX/SpacePilotPRO
Internet Speed
1.5Mbps down/384Kbps up
Other Info
APC SURT 1000XL
Logitech Z-560
Wiimote
Mikrotik Router
Linksys (now Cisco) SD2008 8 port Gigabit switch
Linksys WRT54G (acting as AP)
Apple wireless Aluminium keyboard
Apple Magic Mouse
Xbox360 wired controller
Wow, I read your other thread, what happened? Care to share?

zzz2496

Well, if you read the other thread, you know my network/rig was compromised. It seems someone got in and used windows power shell to run remote commands to copy files and modify windows environment, ect. Even tried rewriting/editing event logs to mask their presence. I was one big proxy server apparently. I stumbled upon part of a script which just happened to have a partial IP along with a computer name(theirs) which after MUCh studying and trial and error (cmd line utilities)I managed to remedy the situation. :)
And would you believe that somehow in the proccess, it seems THEIR computer admin PW got changed, and the puter remotely shut down? Not sure how that happened;)
Thats the Cliffs notes version anyway. It took many hrs and plenty of foul language, though...
 

My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 ultimate X64
CPU
Core i7 870 Lynnfield
Motherboard
MSI P55-GD55
Memory
4GB Corsair XMS 3 1600Mhz
Graphics Card(s)
GeForce 8800 GTS (for the time being)
Sound Card
Onboard 7.1 digital
Monitor(s) Displays
Dell 19"
Screen Resolution
1280x1024
Hard Drives
Barracuda 750Gb
PSU
Corsair TX 650w
Case
Thermaltake Armour Extreme Edition
Cooling
Corsair H50
Keyboard
Dell XPS slim
Mouse
Dell XPS mouse (only good product)
Internet Speed
100 Mbps +/-
Wow, I read your other thread, what happened? Care to share?

zzz2496

Well, if you read the other thread, you know my network/rig was compromised. It seems someone got in and used windows power shell to run remote commands to copy files and modify windows environment, ect. Even tried rewriting/editing event logs to mask their presence. I was one big proxy server apparently. I stumbled upon part of a script which just happened to have a partial IP along with a computer name(theirs) which after MUCh studying and trial and error (cmd line utilities)I managed to remedy the situation. :)
And would you believe that somehow in the proccess, it seems THEIR computer admin PW got changed, and the puter remotely shut down? Not sure how that happened;)
Thats the Cliffs notes version anyway. It took many hrs and plenty of foul language, though...

Whew, one hell of a ride, huh? Glad you made it through...

I'm curious, how did the "hacker" get into your network? Did you not have a firewall in place (some box that stands between your network and the internet)?

zzz2496
 

My Computer

Computer Manufacturer/Model Number
Self Built
OS
Windows7 Ultimate 64bit
CPU
Intel Core 2 Quad Q6600
Motherboard
Abit IN9-32X-MMAX
Memory
DDR2 Adata 4GB
Graphics Card(s)
Nvidia GeForce GTX 285 1024 and Nvidia GeForce 8800GT 512
Sound Card
Asus Xonar HDAV 1.3
Monitor(s) Displays
Dell 2407WFP and BenQ 2400v and Philips 150v3
Screen Resolution
3840x1200 and 1024x768
Hard Drives
2 WDC 1TB
1 WDC 1.5TB
1 WDC 640GB
1 WDC 320GB
1 Seagate 200GB
PSU
Corsair TX 850W
Case
Cooler Master HAF932
Cooling
Arctic Cooling Freezer Extreme and plenty of fans...
Keyboard
MicrosoftNaturalKeyboard 4000/Apple Alu keyboard/Dinovo mini
Mouse
Logitech G5/MarbleMouseTrackball/PerformanceMX/SpacePilotPRO
Internet Speed
1.5Mbps down/384Kbps up
Other Info
APC SURT 1000XL
Logitech Z-560
Wiimote
Mikrotik Router
Linksys (now Cisco) SD2008 8 port Gigabit switch
Linksys WRT54G (acting as AP)
Apple wireless Aluminium keyboard
Apple Magic Mouse
Xbox360 wired controller
Hey everybody!
Wow, it's only been a week since my network was intruded upon, and I havent been in here-or elsewere for that matter-since then.
It feels like much longer!. Anyway, I utilized that time to learn all I could about networking and network security.(havent even scratched the surface, I know) BUt suffice it to say I remedied the situation and dont think that will be an issue( of that magnatude) again. I just wanted to thank all those who shared and helped me with it. I missed you guys*sniff*:p
You know, I didnt realize just how many PW I would have to change due to all this. What a PITA!( I never use the same one twice)
Oh, well. Alls well that ends well.:)

Glad you are back and that all is finally well. That is a real bummer that you had to go through this.
 

My Computer

Computer Manufacturer/Model Number
Home built
OS
Windows 7 Ultimate 32 bit
CPU
Intel(R) Pentium(R) 4 CPU 3.00GHz
Motherboard
ASUS P4P800-VM Motherboard Chipset: Intel 865G + ICH5
Memory
2.50 GB RAM
Graphics Card(s)
NVIDIA GeForce 7600 GS
Sound Card
SoundMax Integrated Digital Audio (Chip)
Monitor(s) Displays
ViewSonic VX 1962 wm
Screen Resolution
1680 X 1050
Hard Drives
Seagate Barracuda 7200.10 80 GB
ST380215A ATA Device 18.6 GB
Western Digital "My Book" external hard drive 750 GB
Cooling
Fan based
Keyboard
Microsoft Comfort Curve Keyboard 2000 v10 USB
Mouse
Logitec optic USB
Internet Speed
3.01 Mb/s download 0.64 Mb/s upload
I'm curious, how did the "hacker" get into your network? Did you not have a firewall in place (some box that stands between your network and the internet)?
I was using windows native firewall, as well as the routers firewall, as well as WPA personal for wireless.(WPA2 maybe?)
I honestly believe the script originated from a website maybe. But it initiated a RDC (Remote Desktop Connection) Or thats my hypothesis at any rate. And I did find key/mouse drivers replaced with .sys file extentions. As I said, I dont know that much about the process other than what I learned on the fly. One thing still concerns me though. And it may be purely unrelated. But my desktop display doesnt quite fill my monitor(wide screen). Its lacking like 3/8" from fill, and nothing I've tried helps. Almost like an image of the desktop in the screen. Any guesses on that one?:confused:

Sounds like this thread to me...
Very similar to this thread...http://www.sevenforums.com/network-sharing/20284-login-rdp-without-bumping-current-session.html
I wonder how one would scan for something that for the most part ISNT unnatural programs/processes??
 
Last edited:

My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 ultimate X64
CPU
Core i7 870 Lynnfield
Motherboard
MSI P55-GD55
Memory
4GB Corsair XMS 3 1600Mhz
Graphics Card(s)
GeForce 8800 GTS (for the time being)
Sound Card
Onboard 7.1 digital
Monitor(s) Displays
Dell 19"
Screen Resolution
1280x1024
Hard Drives
Barracuda 750Gb
PSU
Corsair TX 650w
Case
Thermaltake Armour Extreme Edition
Cooling
Corsair H50
Keyboard
Dell XPS slim
Mouse
Dell XPS mouse (only good product)
Internet Speed
100 Mbps +/-
I'm curious, how did the "hacker" get into your network? Did you not have a firewall in place (some box that stands between your network and the internet)?
I was using windows native firewall, as well as the routers firewall, as well as WPA personal for wireless.(WPA2 maybe?)
I honestly believe the script originated from a website maybe. But it initiated a RDC (Remote Desktop Connection) Or thats my hypothesis at any rate. And I did find key/mouse drivers replaced with .sys file extentions. As I said, I dont know that much about the process other than what I learned on the fly. One thing still concerns me though. And it may be purely unrelated. But my desktop display doesnt quite fill my monitor(wide screen). Its lacking like 3/8" from fill, and nothing I've tried helps. Almost like an image of the desktop in the screen. Any guesses on that one?:confused:

Sounds like this thread to me...
Very similar to this thread...http://www.sevenforums.com/network-sharing/20284-login-rdp-without-bumping-current-session.html
I wonder how one would scan for something that for the most part ISNT unnatural programs/processes??

Did you put your computer in the DMZ zone? I'm curious as this experience can benefit us all, to protect self from being hacked...

I personally NEVER USE DMZ, and every incoming/outgoing traffic is always logged by my router, and it has it's own traffic log/bandwidth usage log, so whenever I feel the network being slow or if I smell something fishy, I can always review the logs/bandwidth monitor in my router.

zzz2496
 

My Computer

Computer Manufacturer/Model Number
Self Built
OS
Windows7 Ultimate 64bit
CPU
Intel Core 2 Quad Q6600
Motherboard
Abit IN9-32X-MMAX
Memory
DDR2 Adata 4GB
Graphics Card(s)
Nvidia GeForce GTX 285 1024 and Nvidia GeForce 8800GT 512
Sound Card
Asus Xonar HDAV 1.3
Monitor(s) Displays
Dell 2407WFP and BenQ 2400v and Philips 150v3
Screen Resolution
3840x1200 and 1024x768
Hard Drives
2 WDC 1TB
1 WDC 1.5TB
1 WDC 640GB
1 WDC 320GB
1 Seagate 200GB
PSU
Corsair TX 850W
Case
Cooler Master HAF932
Cooling
Arctic Cooling Freezer Extreme and plenty of fans...
Keyboard
MicrosoftNaturalKeyboard 4000/Apple Alu keyboard/Dinovo mini
Mouse
Logitech G5/MarbleMouseTrackball/PerformanceMX/SpacePilotPRO
Internet Speed
1.5Mbps down/384Kbps up
Other Info
APC SURT 1000XL
Logitech Z-560
Wiimote
Mikrotik Router
Linksys (now Cisco) SD2008 8 port Gigabit switch
Linksys WRT54G (acting as AP)
Apple wireless Aluminium keyboard
Apple Magic Mouse
Xbox360 wired controller
Did you put your computer in the DMZ zone? I'm curious as this experience can benefit us all, to protect self from being hacked...

I personally NEVER USE DMZ, and every incoming/outgoing traffic is always logged by my router, and it has it's own traffic log/bandwidth usage log, so whenever I feel the network being slow or if I smell something fishy, I can always review the logs/bandwidth monitor in my router.

Is that what I did? lol I suppose so. So how do I go about SAFELY networking my home office? Or is that an oxymoron?
BTW I just had a peek at your tutorial.Looks WELL informed. I guess I'll curb any further questions until after I study that.:) I know I need to get rid/uninstall a LOT of network adapters that pose a potential weak link. And yes, I am logging everthing with router as well.
I already put out the bait by being in DMZ I guess!:p
 

My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 ultimate X64
CPU
Core i7 870 Lynnfield
Motherboard
MSI P55-GD55
Memory
4GB Corsair XMS 3 1600Mhz
Graphics Card(s)
GeForce 8800 GTS (for the time being)
Sound Card
Onboard 7.1 digital
Monitor(s) Displays
Dell 19"
Screen Resolution
1280x1024
Hard Drives
Barracuda 750Gb
PSU
Corsair TX 650w
Case
Thermaltake Armour Extreme Edition
Cooling
Corsair H50
Keyboard
Dell XPS slim
Mouse
Dell XPS mouse (only good product)
Internet Speed
100 Mbps +/-
hi whoever you are.
 

My Computer

OS
windows7 premium x64
CPU
intel core2 duo
Motherboard
acer aspire 5935
Memory
3.0GB
Monitor(s) Displays
15.6 HD
Screen Resolution
1366 x 768
Hard Drives
320gb
Keyboard
Keyboard backlight

My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 ultimate X64
CPU
Core i7 870 Lynnfield
Motherboard
MSI P55-GD55
Memory
4GB Corsair XMS 3 1600Mhz
Graphics Card(s)
GeForce 8800 GTS (for the time being)
Sound Card
Onboard 7.1 digital
Monitor(s) Displays
Dell 19"
Screen Resolution
1280x1024
Hard Drives
Barracuda 750Gb
PSU
Corsair TX 650w
Case
Thermaltake Armour Extreme Edition
Cooling
Corsair H50
Keyboard
Dell XPS slim
Mouse
Dell XPS mouse (only good product)
Internet Speed
100 Mbps +/-
zzz2496 said:
Did you put your computer in the DMZ zone? I'm curious as this experience can benefit us all, to protect self from being hacked...

I personally NEVER USE DMZ, and every incoming/outgoing traffic is always logged by my router, and it has it's own traffic log/bandwidth usage log, so whenever I feel the network being slow or if I smell something fishy, I can always review the logs/bandwidth monitor in my router.

zzz2496

OK, time to show my ignorance, what is DMZ? I know it is different from my military definition, demilitarized zone. :D
 

My Computer

Computer Manufacturer/Model Number
Home built
OS
Windows 7 Ultimate 32 bit
CPU
Intel(R) Pentium(R) 4 CPU 3.00GHz
Motherboard
ASUS P4P800-VM Motherboard Chipset: Intel 865G + ICH5
Memory
2.50 GB RAM
Graphics Card(s)
NVIDIA GeForce 7600 GS
Sound Card
SoundMax Integrated Digital Audio (Chip)
Monitor(s) Displays
ViewSonic VX 1962 wm
Screen Resolution
1680 X 1050
Hard Drives
Seagate Barracuda 7200.10 80 GB
ST380215A ATA Device 18.6 GB
Western Digital "My Book" external hard drive 750 GB
Cooling
Fan based
Keyboard
Microsoft Comfort Curve Keyboard 2000 v10 USB
Mouse
Logitec optic USB
Internet Speed
3.01 Mb/s download 0.64 Mb/s upload
zzz2496 said:
Did you put your computer in the DMZ zone? I'm curious as this experience can benefit us all, to protect self from being hacked...

I personally NEVER USE DMZ, and every incoming/outgoing traffic is always logged by my router, and it has it's own traffic log/bandwidth usage log, so whenever I feel the network being slow or if I smell something fishy, I can always review the logs/bandwidth monitor in my router.

zzz2496

OK, time to show my ignorance, what is DMZ? I know it is different from my military definition, demilitarized zone. :D
Yup, that's it... Basically it's a rule in the router that will direct EVERY traffic that is destined to the router directly to the DMZ-ed host. It's the easiest way to be "directly connected to the Internet" through a router. This way you won't have any problem with closed ports (as long it's open in your Windows firewall), you don't need to make a forwarding rule. It's the easy way to get screwed, basically...

zzz2496
 

My Computer

Computer Manufacturer/Model Number
Self Built
OS
Windows7 Ultimate 64bit
CPU
Intel Core 2 Quad Q6600
Motherboard
Abit IN9-32X-MMAX
Memory
DDR2 Adata 4GB
Graphics Card(s)
Nvidia GeForce GTX 285 1024 and Nvidia GeForce 8800GT 512
Sound Card
Asus Xonar HDAV 1.3
Monitor(s) Displays
Dell 2407WFP and BenQ 2400v and Philips 150v3
Screen Resolution
3840x1200 and 1024x768
Hard Drives
2 WDC 1TB
1 WDC 1.5TB
1 WDC 640GB
1 WDC 320GB
1 Seagate 200GB
PSU
Corsair TX 850W
Case
Cooler Master HAF932
Cooling
Arctic Cooling Freezer Extreme and plenty of fans...
Keyboard
MicrosoftNaturalKeyboard 4000/Apple Alu keyboard/Dinovo mini
Mouse
Logitech G5/MarbleMouseTrackball/PerformanceMX/SpacePilotPRO
Internet Speed
1.5Mbps down/384Kbps up
Other Info
APC SURT 1000XL
Logitech Z-560
Wiimote
Mikrotik Router
Linksys (now Cisco) SD2008 8 port Gigabit switch
Linksys WRT54G (acting as AP)
Apple wireless Aluminium keyboard
Apple Magic Mouse
Xbox360 wired controller
Thank you, Sir. I understand. I appreciate the answer.
 

My Computer

Computer Manufacturer/Model Number
Home built
OS
Windows 7 Ultimate 32 bit
CPU
Intel(R) Pentium(R) 4 CPU 3.00GHz
Motherboard
ASUS P4P800-VM Motherboard Chipset: Intel 865G + ICH5
Memory
2.50 GB RAM
Graphics Card(s)
NVIDIA GeForce 7600 GS
Sound Card
SoundMax Integrated Digital Audio (Chip)
Monitor(s) Displays
ViewSonic VX 1962 wm
Screen Resolution
1680 X 1050
Hard Drives
Seagate Barracuda 7200.10 80 GB
ST380215A ATA Device 18.6 GB
Western Digital "My Book" external hard drive 750 GB
Cooling
Fan based
Keyboard
Microsoft Comfort Curve Keyboard 2000 v10 USB
Mouse
Logitec optic USB
Internet Speed
3.01 Mb/s download 0.64 Mb/s upload
You're welcome :)
 

My Computer

Computer Manufacturer/Model Number
Self Built
OS
Windows7 Ultimate 64bit
CPU
Intel Core 2 Quad Q6600
Motherboard
Abit IN9-32X-MMAX
Memory
DDR2 Adata 4GB
Graphics Card(s)
Nvidia GeForce GTX 285 1024 and Nvidia GeForce 8800GT 512
Sound Card
Asus Xonar HDAV 1.3
Monitor(s) Displays
Dell 2407WFP and BenQ 2400v and Philips 150v3
Screen Resolution
3840x1200 and 1024x768
Hard Drives
2 WDC 1TB
1 WDC 1.5TB
1 WDC 640GB
1 WDC 320GB
1 Seagate 200GB
PSU
Corsair TX 850W
Case
Cooler Master HAF932
Cooling
Arctic Cooling Freezer Extreme and plenty of fans...
Keyboard
MicrosoftNaturalKeyboard 4000/Apple Alu keyboard/Dinovo mini
Mouse
Logitech G5/MarbleMouseTrackball/PerformanceMX/SpacePilotPRO
Internet Speed
1.5Mbps down/384Kbps up
Other Info
APC SURT 1000XL
Logitech Z-560
Wiimote
Mikrotik Router
Linksys (now Cisco) SD2008 8 port Gigabit switch
Linksys WRT54G (acting as AP)
Apple wireless Aluminium keyboard
Apple Magic Mouse
Xbox360 wired controller
Thank you, Sir. I understand. I appreciate the answer.
Hello Carl;

Hey, I ran across this in a router manual recently, and it seemed to explain the DMZ in a way that even I could understand.

router_dmz.png

Cheers!
Robert
 

My Computer

OS
...
It's the easy way to get screwed, basically...

Truer words have never been spoken:p
 

My Computer

Computer Manufacturer/Model Number
Custom
OS
Windows 7 ultimate X64
CPU
Core i7 870 Lynnfield
Motherboard
MSI P55-GD55
Memory
4GB Corsair XMS 3 1600Mhz
Graphics Card(s)
GeForce 8800 GTS (for the time being)
Sound Card
Onboard 7.1 digital
Monitor(s) Displays
Dell 19"
Screen Resolution
1280x1024
Hard Drives
Barracuda 750Gb
PSU
Corsair TX 650w
Case
Thermaltake Armour Extreme Edition
Cooling
Corsair H50
Keyboard
Dell XPS slim
Mouse
Dell XPS mouse (only good product)
Internet Speed
100 Mbps +/-

My Computer

Computer Manufacturer/Model Number
Home built
OS
Windows 7 Ultimate 32 bit
CPU
Intel(R) Pentium(R) 4 CPU 3.00GHz
Motherboard
ASUS P4P800-VM Motherboard Chipset: Intel 865G + ICH5
Memory
2.50 GB RAM
Graphics Card(s)
NVIDIA GeForce 7600 GS
Sound Card
SoundMax Integrated Digital Audio (Chip)
Monitor(s) Displays
ViewSonic VX 1962 wm
Screen Resolution
1680 X 1050
Hard Drives
Seagate Barracuda 7200.10 80 GB
ST380215A ATA Device 18.6 GB
Western Digital "My Book" external hard drive 750 GB
Cooling
Fan based
Keyboard
Microsoft Comfort Curve Keyboard 2000 v10 USB
Mouse
Logitec optic USB
Internet Speed
3.01 Mb/s download 0.64 Mb/s upload
OK so I had first encounter with a boat load of the buggers. I was setting up a dual boot partition (clean installed) when lo and behold defender pops up and starts to run. Now I know defender doesnt do that so I just hit cancel. Unfortunately the cancel button also spawned more nasties.

Now Im at the point where I cant open task manager, I cant go to any AV web site, and its just launching more and more processes.

I finally had a brain storm. Boot from the other partition and run a virus scan from that partition to the infected one.

After deleting, and removing 77 objects I had a clean (clean) partition.

Not feeling comfortable I re-formatted anyway.. Total time to back online cleanly was about 2 hours.

Always helps to have a win 7 installed on a USB stick. 22 minutes to install.

So be careful


Ken
 

My Computer

Computer Manufacturer/Model Number
HP Pavillion dv-7 1005 Tx
OS
Win 8 Release candidate 8400
CPU
[email protected]
Memory
4 gigs
Graphics Card(s)
Nvidia 9600M
Sound Card
HD built-in
Monitor(s) Displays
17" Wxga
Screen Resolution
1440x900
Cooling
none
Internet Speed
45Mb down 5Mb up
Back
Top