!URGENT! I think i'm being hacked!

Page 3 - Seeking answers? Join the AnandTech community: where nearly half-a-million members share solutions and discuss the latest tech.

Bassyhead

Diamond Member
Nov 19, 2001
4,545
0
0
Yes, blue = compressed, but not sure how the files changed themselves. Maybe you just noticed them?
 

darkjester

Golden Member
Aug 14, 2001
1,424
0
0


<<

<< Right but AM i being hacked? >>


Install ZoneAlarm and find out.
>>


and


<< two words, zone alarm. >>



From the initial post:
<<...And the files are useless, stuff like empty folders and Windows wallpapers. Zone Alarm detects NOTHING. ICQ, IE, Generic Win32 Host Process (?) and itself...>>

I know some people don't read the entire thread before replying, but how about at least reading the first one?
 

littleman

Golden Member
May 19, 2000
1,438
0
0
this is just like my post: I SWALLOWED CD CLEANER

when you guys have issues, try to solve them first before comign to ATOT hahah ;)
 

her209

No Lifer
Oct 11, 2000
56,336
11
0
pull the plug and do a reboot.

not sure why the files would be blue tho.

but if they change color after the reboot, when you are not connected to net or not, that might help determine if you got hacked.
 

SagaLore

Elite Member
Dec 18, 2001
24,036
21
81


<< Ok i just loaded up Windows Explorer and noticed that some random files are blue. WTF? Right clicked one, it showed multiple users. Some with (CRxxxxxxxxxxxx) beside them, like my original Administrator user. All have different properties. Users like Administrators, SYSTEM, Power Users. Like 3-6 and they keep changing. And the files are useless, stuff like empty folders and Windows wallpapers. Zone Alarm detects NOTHING. ICQ, IE, Generic Win32 Host Process (?) and itself. Am i being hacked?

Update: Mostly files in /Windows it seems.. extensions: bmp (75%), ini (20%) and log (5%) it seems. A few mov files here and there, 1/3 jpegs in my porn folder.
>>



You're infected with a virus. You might want to shutdown and scan your hard drive with the newest rescue disks.
 

CSoup

Senior member
Jan 9, 2002
565
0
0
You a probably fine. Compressed files show up as blue on many systems. Also, the (CRxxxxxxx) that shows up next to those user names should be the name of your computer since those should be local accounts. System, Administrator, Power User, and User are all default windows NT user types. Many files in your WINNT directory will have permissions given to these users. Nothing wrong with that.
 

n0cmonkey

Elite Member
Jun 10, 2001
42,936
1
0


<< Use Linux ;). Sorry, couldn't resist...

Like others said, install firewall, disconnect from the network, run antivirus, see if you find any trojans. And you only use the admin-user? Create a user for everyday use, and use that. Give the admin more complex password.

In UNIX/Linux, you never EVER use root (administrator in Windows) for everyday use! And that's a good rule to live by, even in Windows.
>>



Use sudo instead of logging in as root on UNIX-like systems, or under dire circumstances, su. There is a run-as option in Windows for Win2k/XP users. Its similar if not the same.

Up to date anti-virus definitions are *VERY* important, as is a good firewall and a little common sense. You can get viruses from email (which is why you need to make sure your av program scans email), downloaded files (which is why your av program should scan everything as it is downloaded and another reason to stay away from warez), and people messing with your computer (which is why you use *STRONG* passwords and dont use an admin account).
 

Viper GTS

Lifer
Oct 13, 1999
38,107
433
136


<<

<< Pull the plug on your internet connection, stupid.

Viper GTS
>>



Harsh.. Did you have to aff the "stupid" part on there?
Having a bad day?
>>



Perhaps I should have added the little winking face, but that would have added another three keystrokes.

;)

Viper GTS