Need help!! my PC is HACKED

Page 2 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.

fredtam

Diamond Member
Jun 6, 2003
5,694
2
76
Originally posted by: Solodays
what you mean by reinstalling over my current installation? i have XP HOME restore cd butta i really dont wanna reformat and start everything from scratch.

Insert XP disc follow through till it finds the current installation and selest repair. (not repair console in the beginning)
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Slappy00
he's not saying reformat, he's saying to reinstall windows over your current version. This will leave most of your files intact but write over the OS files.

you will lose your "documents folder" (my docs, my music, my pics) make sure to back up your registry and know how to edit it. <3

I've never lost that stuff.
 

Iron Woode

Elite Member
Super Moderator
Oct 10, 1999
31,306
12,823
136
Originally posted by: n0cmonkey
Originally posted by: Solodays
what you mean by reinstalling over my current installation? i have XP HOME restore cd butta i really dont wanna reformat and start everything from scratch.

Then maybe you should have thought better about antagonizing someone on the internet. ;)

You might be able to install without formatting. It essentially installs over itself. Not sure if crappy restore cds can do that or not though.
Somebody hack me!!!!! I want the hax0rs!!!!
 

fredtam

Diamond Member
Jun 6, 2003
5,694
2
76
Originally posted by: n0cmonkey
Originally posted by: Slappy00
he's not saying reformat, he's saying to reinstall windows over your current version. This will leave most of your files intact but write over the OS files.

you will lose your "documents folder" (my docs, my music, my pics) make sure to back up your registry and know how to edit it. <3

I've never lost that stuff.

me either
 

yukichigai

Diamond Member
Apr 23, 2003
6,404
0
76
Hey, here's a tip: stop using Yahoo and get a better client. Y'know, like Trillian or something.

My damn roommate got a virus through Yahoo. Left it on my server when he went back to the Ukrane.
 

Solodays

Senior member
Jun 26, 2003
853
0
0
Originally posted by: Iron Woode
Originally posted by: Solodays
what you mean by reinstalling over my current installation? i have XP HOME restore cd butta i really dont wanna reformat and start everything from scratch.
You didn't install the OS yourself, did you?

This must be a Dell, Compaq, Gateway, whatever then.


that's correct.
 

Iron Woode

Elite Member
Super Moderator
Oct 10, 1999
31,306
12,823
136
Originally posted by: Solodays
Originally posted by: Iron Woode
Originally posted by: Solodays
what you mean by reinstalling over my current installation? i have XP HOME restore cd butta i really dont wanna reformat and start everything from scratch.
You didn't install the OS yourself, did you?

This must be a Dell, Compaq, Gateway, whatever then.


that's correct.
Anything beyond the restoration disks to getting your system up again, will involve buying Win XP Home and installing that.

Otherwise I suggest the OS forum and ask there.
 

Slappy00

Golden Member
Jun 17, 2002
1,820
4
81
I've never lost that stuff.



me either

guess i better lay down that crack pipe then...

I could have sworn... well i usually just format, but the one time...bah you win this time Bond.
 

Solodays

Senior member
Jun 26, 2003
853
0
0
Originally posted by: warcrow
*sigh*


Ok, do this:

1) Boot the system into safe mode (hit F8 right after the system POSTs)
2) Go into Safemode with networking.
3) Run Spybot. If you don't have it, google Spybot Search and Destroy and DL it.
4) Run Adware. If you don't have it, google "lavalsoft" and "adware". DL it.
5) Run Spyware blaster. If you....well, you get the idea.
6) Ok, now once you've run all three, run you're viri checker now. (you do have one, right?)
7) Boot into windows now. If you cannot, unplug your cat5 from the back, and go through steps 3-5.
8) If you still cannot boot into windows, DL hijackthis and post the log in the software forum telling them you're an idiot who actually told someone to hack you and you've been hacked.

9) PROFIT!!

yeah dude, already tried, couldn't get in window for a adware scan. :(


alright then how can i recover my files?
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Solodays
Originally posted by: warcrow
*sigh*


Ok, do this:

1) Boot the system into safe mode (hit F8 right after the system POSTs)
2) Go into Safemode with networking.
3) Run Spybot. If you don't have it, google Spybot Search and Destroy and DL it.
4) Run Adware. If you don't have it, google "lavalsoft" and "adware". DL it.
5) Run Spyware blaster. If you....well, you get the idea.
6) Ok, now once you've run all three, run you're viri checker now. (you do have one, right?)
7) Boot into windows now. If you cannot, unplug your cat5 from the back, and go through steps 3-5.
8) If you still cannot boot into windows, DL hijackthis and post the log in the software forum telling them you're an idiot who actually told someone to hack you and you've been hacked.

9) PROFIT!!

yeah dude, already tried, couldn't get in window for a adware scan. :(


alright then how can i recover my files?

It depends on your backup solution. I burn files to DVD-r. I'd just reinstall and copy the files back from the DVD discs.
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Slappy00
I've never lost that stuff.



me either

guess i better lay down that crack pipe then...

I could have sworn... well i usually just format, but the one time...bah you win this time Bond.

Often times it will move the files, or create a new directory for the user. Something like Administrator.000.
 

Solodays

Senior member
Jun 26, 2003
853
0
0
Originally posted by: n0cmonkey
Originally posted by: Solodays
Originally posted by: warcrow
*sigh*


Ok, do this:

1) Boot the system into safe mode (hit F8 right after the system POSTs)
2) Go into Safemode with networking.
3) Run Spybot. If you don't have it, google Spybot Search and Destroy and DL it.
4) Run Adware. If you don't have it, google "lavalsoft" and "adware". DL it.
5) Run Spyware blaster. If you....well, you get the idea.
6) Ok, now once you've run all three, run you're viri checker now. (you do have one, right?)
7) Boot into windows now. If you cannot, unplug your cat5 from the back, and go through steps 3-5.
8) If you still cannot boot into windows, DL hijackthis and post the log in the software forum telling them you're an idiot who actually told someone to hack you and you've been hacked.

9) PROFIT!!

yeah dude, already tried, couldn't get in window for a adware scan. :(


alright then how can i recover my files?

It depends on your backup solution. I burn files to DVD-r. I'd just reinstall and copy the files back from the DVD discs.

yes. i have a burner, how can i burn it to a disc if i can't even get back to window?

 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Solodays
Originally posted by: n0cmonkey
Originally posted by: Solodays
Originally posted by: warcrow
*sigh*


Ok, do this:

1) Boot the system into safe mode (hit F8 right after the system POSTs)
2) Go into Safemode with networking.
3) Run Spybot. If you don't have it, google Spybot Search and Destroy and DL it.
4) Run Adware. If you don't have it, google "lavalsoft" and "adware". DL it.
5) Run Spyware blaster. If you....well, you get the idea.
6) Ok, now once you've run all three, run you're viri checker now. (you do have one, right?)
7) Boot into windows now. If you cannot, unplug your cat5 from the back, and go through steps 3-5.
8) If you still cannot boot into windows, DL hijackthis and post the log in the software forum telling them you're an idiot who actually told someone to hack you and you've been hacked.

9) PROFIT!!

yeah dude, already tried, couldn't get in window for a adware scan. :(


alright then how can i recover my files?

It depends on your backup solution. I burn files to DVD-r. I'd just reinstall and copy the files back from the DVD discs.

yes. i have a burner, how can i burn it to a disc if i can't even get back to window?

The point of making backups are to have them in case something like this happens. ie. You make backups, PC fails, you have backups, yay.

Thinking about backups after the fact is kinda icky.

Ok, take the drive out of the borked machine, put it as a slave drive (or primary on a secondary IDE controller or whatever), and pull the files onto a working machine. The working machine will probably need 2k/XP.
 

fredtam

Diamond Member
Jun 6, 2003
5,694
2
76
Originally posted by: Solodays
Originally posted by: warcrow
*sigh*


Ok, do this:

1) Boot the system into safe mode (hit F8 right after the system POSTs)
2) Go into Safemode with networking.
3) Run Spybot. If you don't have it, google Spybot Search and Destroy and DL it.
4) Run Adware. If you don't have it, google "lavalsoft" and "adware". DL it.
5) Run Spyware blaster. If you....well, you get the idea.
6) Ok, now once you've run all three, run you're viri checker now. (you do have one, right?)
7) Boot into windows now. If you cannot, unplug your cat5 from the back, and go through steps 3-5.
8) If you still cannot boot into windows, DL hijackthis and post the log in the software forum telling them you're an idiot who actually told someone to hack you and you've been hacked.

9) PROFIT!!

yeah dude, already tried, couldn't get in window for a adware scan. :(


alright then how can i recover my files?


Another hard drive.
 

Solodays

Senior member
Jun 26, 2003
853
0
0
Ok, take the drive out of the borked machine, put it as a slave drive (or primary on a secondary IDE controller or whatever), and pull the files onto a working machine. The working machine will probably need 2k/XP.


how exactly do i do that?

 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Solodays
Ok, take the drive out of the borked machine, put it as a slave drive (or primary on a secondary IDE controller or whatever), and pull the files onto a working machine. The working machine will probably need 2k/XP.


how exactly do i do that?

SHUT DOWN ALL COMPUTERS

Remove the drive from your computer. Set the jumper to "slave." Connect the hard drive to the computer you're using now. Boot up the computer you are on now (the one that now has the extra drive). Pray things aren't bad enough that Windows recognizes the drive and assigns it a drive letter.
 

fredtam

Diamond Member
Jun 6, 2003
5,694
2
76
Originally posted by: Solodays
Ok, take the drive out of the borked machine, put it as a slave drive (or primary on a secondary IDE controller or whatever), and pull the files onto a working machine. The working machine will probably need 2k/XP.


how exactly do i do that?

Ok, take the drive out of the borked machine, put it as a slave drive (or primary on a secondary IDE controller or whatever), and pull the files onto a working machine.

Open explorer and find the files you want.
 

Slappy00

Golden Member
Jun 17, 2002
1,820
4
81
you know this makes me wonder exactly how he got the virus in the first place. I mean if you regularly patch your winblows, and turn off IIS telnet and other garbage you never use I would think that most ports are closed by default. Strange... now come to think of it im off to GRC to see what my router can do.
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Slappy00
you know this makes me wonder exactly how he got the virus in the first place. I mean if you regularly patch your winblows, and turn off IIS telnet and other garbage you never use I would think that most ports are closed by default. Strange... now come to think of it im off to GRC to see what my router can do.

GRC is a scam.
 

Solodays

Senior member
Jun 26, 2003
853
0
0
cool, i didnt know you could do that, i 've never installed a secondary HD before. as i've said before it wont even boot to window, do you think it will be able to read the HD for my other PC?
 

Slappy00

Golden Member
Jun 17, 2002
1,820
4
81
Originally posted by: n0cmonkey
Originally posted by: Slappy00
you know this makes me wonder exactly how he got the virus in the first place. I mean if you regularly patch your winblows, and turn off IIS telnet and other garbage you never use I would think that most ports are closed by default. Strange... now come to think of it im off to GRC to see what my router can do.

GRC is a scam.



say it aint so
 

Goosemaster

Lifer
Apr 10, 2001
48,775
3
81
Originally posted by: Slappy00
Originally posted by: n0cmonkey
Originally posted by: Slappy00
you know this makes me wonder exactly how he got the virus in the first place. I mean if you regularly patch your winblows, and turn off IIS telnet and other garbage you never use I would think that most ports are closed by default. Strange... now come to think of it im off to GRC to see what my router can do.

GRC is a scam.



say it aint so

lol.
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Solodays
cool, i didnt know you could do that, i 've never installed a secondary HD before. as i've said before it wont even boot to window, do you think it will be able to read the HD for my other PC?

If it's getting to the login page, I'm guessing that it will be readable. But there is no way for me to tell you without putting it in the other machine and trying it. Make sure you have a virus scanner RUNNING and active when you plug the new drive in. ;)
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0
Originally posted by: Slappy00
Originally posted by: n0cmonkey
Originally posted by: Slappy00
you know this makes me wonder exactly how he got the virus in the first place. I mean if you regularly patch your winblows, and turn off IIS telnet and other garbage you never use I would think that most ports are closed by default. Strange... now come to think of it im off to GRC to see what my router can do.

GRC is a scam.



say it aint so

Wish I could.