Member Panel


Sponsors and Ads

Join the Team

Live Tag Cloud

PC Forum PC Help Forum » Operating Systems » Windows XP/2000 » [Resolved] Got Hacked

Windows XP/2000 - [Resolved] Got Hacked posted in the Operating Systems forums; I believe I've just gotten hacked, wierd programs started popping up and I couldn't run full-screen programs, they'd just freeze. So I hit Restart from Windows and suddenly I get ...

JOIN US NOW to remove these Ads

Post New Thread  Reply
  #1  
Old 01-21-2006
DarkLord7854's Avatar
The cake is a lie..
My PC
 
Join Date: Sep 2005
Location: Florida
Posts: 1,402
PC Experience: Of Epic Proportions.
DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page
Default [Resolved] Got Hacked

I believe I've just gotten hacked, wierd programs started popping up and I couldn't run full-screen programs, they'd just freeze. So I hit Restart from Windows and suddenly I get a whole bunch of "Ending program XXX" windows, half of them about windows command prompt and MS-DOS. Panicking I immediatly hit END NOW on all of them and watched as my screen went to "Closing network connections..." and hanged there, impatient I hit the reset button and waited for XP to load, going through the usual "NTLDR file is missing." Finaly it gets to the welcome screen. Odd thing, my mouse is rainbow colored, not good. It stays on the Welcome screen for 5mins, finaly the desktop appears, half the icons are missing... crud. Nothing is loading, computer is 100x slower then usual and it's usualy fast seeing as it's 3.4Ghz. So now I'm starting to really panic, I open taskmanager, there's only 17 processes running, all part of windows XP. I wait a bit more, things are starting to open, I open the control panel, determined to shut off my wireless card seeing as I can't remove it without having to disconnect my watercooling tubing. I get into CP, can't open network connection, everything is starting to freeze. I can't get into anything at all anymore, everything is frozen solid.
I managed to get it into Safe Mode, now running Norton, my only AV left, all the others got deleted along with half of my programs, internet is finaly offline.
Any help would be greatly appreciated.
This happened over an unsecure wireless connection as my main DSL is down due to Comcast having a real bad customer support and not being able to fix the line since last saturday. How do I know I was hacked? Internet access for programs was reduced and programs started opening randomly.
Again, any and all help is very welcome...


__________________
Don't forget to rate posts if you find them helpful
I only provide Technical Support/Help on personal, or Staff requests.
  #2  
Old 01-21-2006
double_a_ron's Avatar
Elite Member
My PC
 
Join Date: Sep 2005
Location: Canada
Posts: 911
PC Experience: Very Experienced
double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page double_a_ron - See this Members User comments on their Profile page
Default

Wow, sounds pretty intense.

If possible can you do the usual prework thing. Joe5 should know what do do here. This would be one of those time's I'm glad i have linux as a backup OS.


__________________
//Prework\\\///PCHF RULES\\\///Did we help? Please Donate\\\

CompTIA A+ Certified, MCDST



Did we help? Please hit that Thanks button.
  #3  
Old 01-21-2006
DarkLord7854's Avatar
The cake is a lie..
My PC
 
Join Date: Sep 2005
Location: Florida
Posts: 1,402
PC Experience: Of Epic Proportions.
DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page
Default

Thanks for the quick reply.

There is no internet on my computer, I'm currently on the laptop. The computer's floppy drive is nonfunctional and the DVD drive won't work for some off reasong. So no HijackThis unfortunently, I'm working on getting it on there though. I do have Ewido and Ad-Aware loaded and scanning though.


__________________
Don't forget to rate posts if you find them helpful
I only provide Technical Support/Help on personal, or Staff requests.
  #4  
Old 01-21-2006
DarkLord7854's Avatar
The cake is a lie..
My PC
 
Join Date: Sep 2005
Location: Florida
Posts: 1,402
PC Experience: Of Epic Proportions.
DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page
Default

I've managed to HijackThis on the machine. Log is attached


  #5  
Old 01-21-2006
joe5's Avatar
Elite Member
My PC
 
Join Date: Jun 2005
Location: Netherlands
Posts: 9,044
joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page joe5 - See this Members User comments on their Profile page
Default

Clean except for these:

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - Default URLSearchHook is missing

But what stardock software do you have installed? And is it free version/demo/warez or registered/paid?


__________________
- PCHF Team. - (NL) - Mal-ware Eradicator! -

  #6  
Old 01-22-2006
DarkLord7854's Avatar
The cake is a lie..
My PC
 
Join Date: Sep 2005
Location: Florida
Posts: 1,402
PC Experience: Of Epic Proportions.
DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page DarkLord7854 - See this Members User comments on their Profile page
Default

I didn't see your post as I couldn't access the net. I got my computer back online. Chucked Norton into the recycle bin, bought and installed Panda Internet Security, deleted a whole bunch of backdoor and hacking programs as well as 13 trojan horses, recovered all my file. Then Comcast stopped by and fixed the line. So everything is back online and Symantec is officialy on my Black list now.
I also deleted those reg keys just in case. I don't use Stardock anymore, I had the free version, then it expired and I never bothered deleting it.
Thanxs for the help


__________________
Don't forget to rate posts if you find them helpful
I only provide Technical Support/Help on personal, or Staff requests.

Reply
Satellite TV on your PC - over 3000 Channels! Click Here!

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
SpreadFirefox.com Community Website Hacked Once Again. joe5 Security Watch 0 10-08-2005 03:24 AM
[Resolved] athlon 2600 1.9 ghz tswindells Processor/CPU 6 09-22-2005 12:23 AM
[RESOLVED] xp setup issues... :/ Mr. Joe Windows XP/2000 7 09-19-2005 05:07 PM
[resolved] Error message with IE. Graham- [Fixed] Hijackthis! Logs 2 09-16-2005 10:09 PM
[Answered] My hotmail account was hacked into ianc Email & Spam Issues 4 11-03-2004 07:52 PM


All times are GMT +1. The time now is 10:34 AM.
Powered by vBulletin
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0 RC7
All Graphics & Content Copyright © 2004-2008 - PC Help Forum.com


Back to Top
Wills
Wills are complicated, let moneyextra help.

Virtual Private Server
Virtual Private Server, best prices.

Overtime
Learn about overtime laws from the experts at PayMyOvertime.com.