Still Got Problems
Aug. 6th, 2003 11:29 am![[personal profile]](https://www.dreamwidth.org/img/silk/identity/user.png)
Lut's computer was being hacked, by some script kiddie, we guess. He found a file labeled "webdav.exe" planted on his machine, along with various other permissions being messed up, to prevent him from undoing the damage. We downloaded a patch from Microsoft that's supposed to fix the security hole that allowed it in. Lut used the command-prompt safemode to get the permissions he needed back, and thinks he's got his computer back under control.
But whatever this was, it's not apparently connected to the problems plaguing my computer. Mine doesn't have any of the signs of attack that his machine did. He doesn't think anyone's been after it; I'm not so sure. I noticed this morning I was getting a lot of harddrive activity when I wasn't doing anything. WHich went away after I unplugged the cablemodem and rebooted. But I still don't know. Maybe I'm just paranoid.
Upshot: I'm still basically unable to "talk" from home, and I'm not counting on my continued ability to use my machine to scan the net, either. I talked to Lut about possibly re-formatting my harddrive and reinstalling Windoze, but there's no guarantee that'll work, either, since we've no idea what the problem is. At least I've got all my email and writings backed up to CD, as of Sunday evening.
We'll see.
(Gosh, Linux sounds so attractive right now ....)
But whatever this was, it's not apparently connected to the problems plaguing my computer. Mine doesn't have any of the signs of attack that his machine did. He doesn't think anyone's been after it; I'm not so sure. I noticed this morning I was getting a lot of harddrive activity when I wasn't doing anything. WHich went away after I unplugged the cablemodem and rebooted. But I still don't know. Maybe I'm just paranoid.
Upshot: I'm still basically unable to "talk" from home, and I'm not counting on my continued ability to use my machine to scan the net, either. I talked to Lut about possibly re-formatting my harddrive and reinstalling Windoze, but there's no guarantee that'll work, either, since we've no idea what the problem is. At least I've got all my email and writings backed up to CD, as of Sunday evening.
We'll see.
(Gosh, Linux sounds so attractive right now ....)
no subject
Date: 2003-08-06 10:07 am (UTC)It's also free! :)
http://www.zonelabs.com/
no subject
Date: 2003-08-06 05:06 pm (UTC)no subject
Date: 2003-08-06 10:40 am (UTC)My suggestion would be to copy off all the data files (only, not any of the programs) and reformat the hard drive, then install Win2000 Pro fresh, then download all the latest patches before reinstalling programs and copying your data back in. Odds sound rather good that it's a worm of some kind.
no subject
Date: 2003-08-06 10:40 am (UTC)My suggestions would be along the lines of attempting to uninstall and reinstall your ethernet drivers, or just trying a new card.
no subject
Date: 2003-08-06 10:52 am (UTC)I'm highly suspicious that the disk activity stopped when you unplugged the modem. There is a worm going around that let's people host porn sites on unsuspecting people. It's possible you have such a worm in your computer. And though ZoneAlarm will keep that program from reaching the internet it sounds to me that the worm is what's crashing your machine and it will continue to do so until you remove it with Norton Antivirus or similar GOOD virus killer. You might also try Spybot Search and Destroy.
no subject
Date: 2003-08-06 01:59 pm (UTC)no subject
Date: 2003-08-06 03:38 pm (UTC)