Solved Help, somebody is using microsoft C++ 2008 to hack into my pc

Jimmy390

New member
Local time
11:41 AM
Messages
6
Location
Philippines
Microsoft visual C++ 2008 + dial connection = pc hack

I am a college student, living in an apartment

I am using asus laptop K42j series and an internet connection, flash disk smart bro (SMART telecom: isp in the philippines)

The first week after I bought the "Broadband" (but its setup is in dialup connection) the connection was fast and unencrypted, after a few weeks the connection drops a little thus I encrypted it from the advanced firewall settings, until I begin to re-install my windows-7 Home premium because of my paranoia of a hacker hacking my pc.

After 3 months of not knowing, I only noticed today (10-16-2011) that somebody is using microsoft visual C++ 2008 to bypass my firewall settings and to connect to this dial-up usb broadband

I also deleted some files in the C:\Windows\Installer pertaining to microsoft visual C++ which I never installed in this pc, used CCleaner to clean up registry keys made by the microsoft visual C++
 

My Computer My Computer

OS
Windows 7 Home Premium 32bit
...You cannot be serious. First off, the "encryption" provided by Windows Firewall is only for IPsec connections not all network connections. Second, MS Virtual C++ is a resource for applications, a collection of pre-built code libraries. Applications that make use of them supply a redistribution of it. It is as harmless as anything else. Its not a hacker.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Alienware Aurora ALX R4
OS
Windows 10 Pro (x64)
CPU
Intel Core i7-3930K (3.2GHz - 4.5GHz)
Motherboard
Alienware Aurora-R4 x79
Memory
4x Samsung 4GB PC3-12800 DDR3 (16GB 1600MHz)
Graphics Card(s)
Nvidia Geforce GTX 690
Sound Card
SteelSeries Siberia Elite
Monitor(s) Displays
Dell UltraSharp U3011
Screen Resolution
2560x1600
Hard Drives
Samsung 850 Pro 256 GB, Seagate 1TB Desktop Hybrid HDD, 2x Western Digital 4TB Green HDD
PSU
875W Some Dell PSU <.<
Case
Alienware Aurora ALX
Cooling
Custom Liquid Cooling (EK CPU & GPU blocks) dual EK 480RAD
Keyboard
Logitech G710+ Mechanical
Mouse
Logitech G700s
Internet Speed
Verizon Fios (50 mbps average)
Other Info
Server: Intel NUC D54250WYK: i5-4250U, 16GB, 256 GB mSATA, Windows Server 2012 R2
Can you give us a little more detail about the problem, like how you discovered the intrusion, what flagged C++ as being involved, etc? :)
 

My Computer My Computer

Computer Manufacturer/Model Number
Self
OS
Main - Windows 7 Pro SP1 64-Bit; 2nd - Windows Server 2008 R2
CPU
Main - Core i7 2600K; 2nd - Core i7 920
Motherboard
Main - Asus P8Z68-V Pro/Gen3; 2nd - Gigabyte GA-EX58-UDR3
Memory
Main - 16GB Corsair Vengeance; 2nd - 12GB Corsair Vengeance
Graphics Card(s)
Main - XFX Radeon 6870 1GB; 2nd - XFX Radeon 4870 1GB
Sound Card
Both: Onboard Realtek Azalia
Monitor(s) Displays
Main - Hann 25" + I-INC 25" + Acer 23"; 2nd - Upgrading Soon
Screen Resolution
Main - 1920x1080 (All Three Monitors); 2nd - Upgrading Soon
Hard Drives
Main - (1) Crucial M4 128GB (Boot)
Main - (1) Seagate 2TB 64MB Cache (Data)
Main - (1) Seagate 2TB 64MB Cache (Data Backup)
2nd - (1) Intel X25-M SSD 80GB (Boot)
2nd - (3) Seagate 1TB 32MB Cache (Data Backup)
2nd - (1) Seagate 320GB (Because)
PSU
Main - OCZ 600W Modular; 2nd - OCZ 600W
Case
Main - Thermaltake Element G; 2nd - NZXT something or other
Cooling
Main - Corsair H80; 2nd - Prolimatech Megahalems
Keyboard
Main - Razer Reclusa; 2nd - Old MS Keyboard
Mouse
Main - Logitech MX Revolution; 2nd - Old MS Mouse
Internet Speed
20Mbps Time-Warner Cable
The moment I reinstalled windows 7, there is already files in the temp folder including ones with the C++ and the windows installer, luckily ccleaner with me..

In the C:\Windows\Installer folder, there are files that are in there, but I never installed any of it, there are also files that belong to the windows 7 installer, the thing troubled me is that the files in the Installer folder has the majority of Microsoft C++ (right click>>>properties>>>detailes tab) which I never Installed, ofcourse I got security update for Microsoft Visual C++ after when I updated my windows after the day I installed it

certain dlls i the services.msc also has addresses to C:\Users\(user name)\appdata\Local\Temp

Before I reinstalled my pc, I do get numerous updates from Java and adobe reader with the latest version already installed

I do not have a copy or name of the files because I have deleted them already, but I do remember that my files in the hard disk before I reinstalled for the first time becomes shared with another Account Unknown after a week even after I kept on modifying security in the Internet options and Home group advanced sharing settings

there are also entries in my disk like C:\Application Data\Application Data\Application Data.......\Application Data...
(don't know what it is)
 

My Computer My Computer

OS
Windows 7 Home Premium 32bit
Okay...I don't know how to put this...but currently the only threat to your computer right now...is yourself.
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Alienware Aurora ALX R4
OS
Windows 10 Pro (x64)
CPU
Intel Core i7-3930K (3.2GHz - 4.5GHz)
Motherboard
Alienware Aurora-R4 x79
Memory
4x Samsung 4GB PC3-12800 DDR3 (16GB 1600MHz)
Graphics Card(s)
Nvidia Geforce GTX 690
Sound Card
SteelSeries Siberia Elite
Monitor(s) Displays
Dell UltraSharp U3011
Screen Resolution
2560x1600
Hard Drives
Samsung 850 Pro 256 GB, Seagate 1TB Desktop Hybrid HDD, 2x Western Digital 4TB Green HDD
PSU
875W Some Dell PSU <.<
Case
Alienware Aurora ALX
Cooling
Custom Liquid Cooling (EK CPU & GPU blocks) dual EK 480RAD
Keyboard
Logitech G710+ Mechanical
Mouse
Logitech G700s
Internet Speed
Verizon Fios (50 mbps average)
Other Info
Server: Intel NUC D54250WYK: i5-4250U, 16GB, 256 GB mSATA, Windows Server 2012 R2
If your router is putting out a wireless signal and your living in an apartment. You should change your wireless encryption to wpa2 if you haven't already. Wep is very easy to break.
 

My Computer My Computer

Computer Manufacturer/Model Number
Samsung rv520
OS
Windows Seven, Ubuntu
CPU
Intel
Graphics Card(s)
Intel
Its not always MS or you installing it. And certainly notjhing outside, but rather applications you are installing.

Many applications will install/re-install C++ as it is required for them to run properly.
You may see different variations of it in the Add/remove programs sections.
32bit, 64bit etc ...

While deleting the temp files is perfectly harmless, as they are just temporary files, removing or un-installing it may break certain applications which require it.


This is all perfectly normal, and nothing to be alarmed about.
 

My Computer My Computer

Computer Manufacturer/Model Number
Custom (Self Build)
OS
Windows 7 Home Premium 64bit
CPU
Intel Core i7 2700k
Motherboard
eVGA P67 SLI
Memory
8GB Mushkin Redline Ridgebacks @1866
Graphics Card(s)
EVGA GTX570 SC
Sound Card
XiFi Titanium HD
Monitor(s) Displays
LG W2453V
Screen Resolution
1920x1080
Hard Drives
Intel 320 80GB -- Intel X25-V 40GB --WD Black 1TB x2 -- WD Blue 640GB
PSU
Seasonic x750
Case
Corsair 600T SE White
Cooling
eVGA Superclocked CPU Cooler
Keyboard
Saitek Cyborg
Antivirus
Kaspersky
Browser
IE
Other Info
LG BD/DVD
there are also entries in my disk like C:\Application Data\Application Data\Application Data.......\Application Data...
(don't know what it is)

The Application Directory is used to store user-specific data. Most software, but not all, will create a subfolder within that directory for information related to that program.
 

My Computer My Computer

OS
Windows 7 & Windows Vista Ultimate
I got paranoid and reinstalled 3 the windows 3 times because I think I got a malware inside my laptop. I read the other threads from the forum about the firewalls, anti viruses and other stuff and the thing that did it is the microsoft essentials with the help of comodo firewall.

steps that I did:
first reinstall, tried if my sharing settings will changed, it got changed..
second reinstall, install windows via upgrade, sharing settings also got changed..
third reinstall, install windows via f8 safe mode core drivers, settings did not change..

after windows installation, I installed comodo firewall before the installation of laptop drivers..
furthermore, I never thought windows 7 had microsoft security essentials (personal antivirus/antimalware in genuine windows)

thank you sir, ma'am for the giving me information about the files that I mentioned
also, I got files with the filename mjcxxx.dll (mjc222.dll, mjc22.dll, mjc333.dll, ... , mjc99.dll) in my system32 within the second reinstallation, I don't know what are those files. I also forgot to mention from my last post that my windows updates automatically updates even if I set the update to "Notify...", and one svc host eat up to 40MB physical memory.
 

My Computer My Computer

OS
Windows 7 Home Premium 32bit
You've said it yourself so you won't mind me repeating it...You really are paranoid...that's not good. You're wasting a lot of time chasing ghosts. Everything you've described is normal and typical behavior for Windows, and I mean everything.

Why are you so worried about being hacked? Do you have military secrets or access codes to a million-dollar Swiss bank account or something?

Consider this. Many of us have been running Windows for years without ever catching a virus, simply by using common sense and following basic precautions (install a good free AV, keep your browser etc. up to date, take the time to configure things correctly, don't visit shady websites etc.).

Whenever there's a new virus or other malware gaining the attention of popular media, they make a big deal out of it and sometimes so-called experts will come up with doomsday predictions and warnings that do nothing but scare PC users who aren't technically competent. But on a day-by-day basis, unless you're simply stupid (I mean the general 'you') you're very unlikely to have a major problem anytime soon.

Stop reinstalling so much and trying to fix problems that aren't there. Just enjoy your computer.

It's true that we Windows folks can run into weird and bizarre issues anytime but usually that's just Windows itself, a harmless bug, a wrong setting, things we're here to help fix when they happen. Not everything unexpected is automatically OH NOES OMG AN INFECTION I'M GONNA LOSE ALL MY DATA WTF. ;)

So take it easy, darn it!!
 
Last edited:

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Custom-built
OS
Windows 7 Professional SP1 32-bit
CPU
Intel Core 2 Duo E6600 2.4GHz
Motherboard
Asus PL5D2
Memory
4GB DDR2-667 (4x1GB in dual-channel config)
Graphics Card(s)
nVidia GeForce 9800 GT
Sound Card
Creative X-Fi XtremeMusic
Monitor(s) Displays
Acer P236H
Screen Resolution
1920x1200 (DVI)
Hard Drives
OCZ SSD Vertex Plus 60GB SATA (Firmware 3.55), 64MB cache
Hitachi HD321KJ SATA, 320GB, 7200rpm, 16MB cache
PSU
Antec TruePower 2.0
Case
Cooler Master Centurion
Cooling
Too many fans
Keyboard
Standard
Mouse
Microsoft wireless optical mouse
Internet Speed
AT&T U-verse (18mbit/sec)
Antivirus
Microsoft Security Essentials
Browser
Firefox
Other Info
Other devices:
Compaq CQ-60 laptop
Google Nexus 7 (2012) tablet
Nvidia SHIELD tablet (US/LTE)
Hardkernel ODROID-XU single-board computer (Samsung Exynos 5420)

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Back
Top