Re: I think my pc have been hacked.



Bjorn wrote:

I have no access to registry, a lot of program dont work, outlook express one important file is missing so all mails are locked in. I have tried to reinstall WinXP (write over) and some important missing files cannot be repaired. SP2 cannot be installed as access is denied for some files.
All points to restore system is gone, I cannot run safe mode.
I cannot log in as administator to fix problems.
The program for my ADSLconnection is not working and now uninstalled due to traffic over the modem.
Something read my HD and use the modem. If I unplug the USBmodem it stops. As soon as I connect the modem the reading (or writing) starts again.
Also some driver is missing for USB so USB ports dont work properly but nothing wrong with modem and internet connection and this without the program from my ISP needed to connect. (uninstalled)


I want to get control over my HD again, please help me. I have all pestprograms up and running and also ZoneAlarm and I havnt open any unknown file lately and not runned any unknown program. I cant open my own files, have no rights, meaning access denied.
Thanks for your help.



From a post by David Lipman:

Download MULTI_AV.EXE from the URL --
http://www.ik-cs.com/programs/virtools/Multi_AV.exe

To use this utility, perform the following...
Execute; Multi_AV.exe { Note: You must use the default folder C:\AV-CLS }
Choose; Unzip
Choose; Close

Execute; C:\AV-CLS\StartMenu.BAT
{ or Double-click on 'Start Menu' in C:\AV-CLS }

NOTE: You may have to disable your software FireWall or allow WGET.EXE to go through your
FireWall to allow it to download the needed AV vendor related files.


C:\AV-CLS\StartMenu.BAT -- { or Double-click on 'Start Menu' in C:\AV-CLS}
This will bring up the initial menu of choices and should be executed in Normal Mode.
This way all the components can be downloaded from each AV vendor's web site.
The choices are; Sophos, Trend, McAfee, Kaspersky, Exit this menu and Reboot the PC.


You can choose to go to each menu item and just download the needed files or you can
download the files and perform a scan in Normal Mode. Once you have downloaded the files
needed for each scanner you want to use, you should reboot the PC into Safe Mode [F8 key
during boot] and re-run the menu again and choose which scanner you want to run in Safe
Mode. It is suggested to run the scanners in both Safe Mode and Normal Mode.


When the menu is displayed hitting 'H' or 'h' will bring up a more comprehensive PDF help
file. http://www.ik-cs.com/multi-av.htm




--
Rock
MS MVP  Windows - Shell/User

.



Relevant Pages

  • Re: IE has generated errors and closes
    ... You might also be able to browse and download programs from the address bar ... You should re-enable browser extensions after the cleanup. ... I don't have any ideas about the missing modem. ... No matter which safe mode option I chose. ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • rc.config deleted, how to recover?
    ... rc.config is missing from /etc and I can only boot using that safe mode ... Can i download a generic rc.config ...
    (comp.unix.tru64)
  • Re: Homepage keeps resetting itself
    ... > Is there some sort of idiots method, i.e. download an *.exe, run it, ... >>>difficult CWS parasite variants to remove. ... >>>using a malware provider's uninstall, ... >>>All of these removal tools should be run from Safe mode when possible. ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • Re: No Desktop, No icons, No START, No Taskbar
    ... I backed-up onto a 100gb Maxtor remote, reinstalled XP Pro SP2, downloaded ... Download SP2 ... MS-MVP Windows - Shell/User ... I've tried to scan in both Safe Mode and Normal Mode. ...
    (microsoft.public.windowsxp.general)
  • RE: SP2 update hung -did not complete
    ... new installation of SP2. ... You can delete this in safe mode if you wish. ... or the download damaged or corrupted partially by any means it can show you ... that he installation a failure, but still the SP2 can function on your ...
    (microsoft.public.windowsxp.help_and_support)