Matt

Contributor
  • Content Count

    3352
  • Joined

  • Last visited

Posts posted by Matt

  1. Hi skywatcher, and welcome to BestTechie! I'll be assisting you to clean up your computer. The first thing I need you to do is follow the steps in this thread. Make sure you go through all of the procedures, and post back here with the logs you get back.

    Matt

  2. Please download OTMoveIt3 by OldTimer

    • Save it to your desktop.
    • Please double-click OTMoveIt3.exe to run it. (Note: If you are running on Vista, right-click on the file and choose Run As Administrator).
    • Copy the lines in the codebox below to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose Copy):
      :Processes
      explorer.exe

      :Services

      :Reg

      :Files
      C:\Documents and Settings\Owner\Local Settings\utah.rqn
      D:\i386\Apps\App00577\comps\toolbar\toolbr.exe

      :Commands
      [purity]
      [emptytemp]
      [start explorer]
      [Reboot]


    • Return to OTMoveIt3, right click in the "Paste Instructions for Items to be Moved" window (under the yellow bar) and choose Paste.
    • Click the red Moveit! button.
    • Copy everything in the Results window (under the green bar) to the clipboard by highlighting ALL of them and pressing CTRL + C (or, after highlighting, right-click and choose copy), and paste it in your next reply.
    • Close OTMoveIt3

    Note: If a file or folder cannot be moved immediately you may be asked to reboot the machine to finish the move process. If you are asked to reboot the machine choose Yes. In this case, after the reboot, open Notepad (Start->All Programs->Accessories->Notepad), click File->Open, in the File Name box enter *.log and press the Enter key, navigate to the C:\_OTMoveIt\MovedFiles folder, and open the newest .log file present, and copy/paste the contents of that document back here in your next post.

    Then, please download GooredFix from one of the locations below and save it to your Desktop

    Download Mirror #1

    Download Mirror #2

    • Double-click GooredFix.exe to run it.
    • Select 1. Find Goored (no fix) by typing 1 and pressing Enter.
    • A log will open, please post the contents of that log in your next reply (it can also be found on your desktop, called GooredLog.txt).

    Note: Do not run Option #2 yet.

    So post back with both log reports, and let me know if you are still getting search redirects.

    Matt

  3. Hi Crashtastic,

    Please run OTList2.exe

    • Under the Custom Scans/Fixes box at the bottom, paste in the following
      :OTLI
      PRC - [2008/04/13 17:12:19 | 01,033,728 | ---- | M] (Microsoft Corporation) -- C:\WINDOWS\explorer.exe
      O4 - HKLM..\Run: [] File not found
      O9 - Extra Button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - File not found
      O9 - Extra Button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - File not found
      O9 - Extra Button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - File not found
      O33 - MountPoints2\{7f1c61b5-4474-11da-a9dd-806d6172696f}\Shell - "" = AutoRun
      O33 - MountPoints2\{7f1c61b5-4474-11da-a9dd-806d6172696f}\Shell\AutoRun - "" = Auto&Play

      :Services

      :Reg

      :Files

      :Commands
      [purity]
      [emptytemp]
      [start explorer]
      [Reboot]


    • Then click the Run Fix button at the top
    • Let the program run unhindered, reboot when it is done
    • Then post a new OTL2 log ( don't check the boxes beside LOP Check or Purity this time, and don't run the Custom Scan )

    Next, Please download ATF Cleaner by Atribune.

    • Double-click ATF-Cleaner.exe to run the program.
      Under Main choose: Select All
      Click the Empty Selected button.

    If you use Firefox browser

    • Click Firefox at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.

    If you use Opera browser

    • Click Opera at the top and choose: Select All
      Click the Empty Selected button.
      NOTE: If you would like to keep your saved passwords, please click No at the prompt.

    Click Exit on the Main menu to close the program.

    Then, Go to Kaspersky website and perform an online antivirus scan.

    1. Read through the requirements and privacy statement and click on Accept button.
    2. It will start downloading and installing the scanner and virus definitions. You will be prompted to install an application from Kaspersky. Click Run.
    3. When the downloads have finished, click on Settings.
    4. Make sure these boxes are checked (ticked). If they are not, please tick them and click on the Save button:
      • Spyware, Adware, Dialers, and other potentially dangerous programs
        Archives
        Mail databases

    [*]Click on My Computer under Scan.

    [*]Once the scan is complete, it will display the results. Click on View Scan Report.

    [*]You will see a list of infected items there. Click on Save Report As....

    [*]Save this report to a convenient place. Change the Files of type to Text file (.txt) before clicking on the Save button. Then post it here.

    So, please post back the Kaspersky and OTL logs. Also, for each time you post a reply, it would be helpful if you could give me an update on how your computer is running. Also, do you recognize this folder? C:\Documents and Settings\Owner\Desktop\mu

    Matt

  4. We bailed on the Linux attack Windows idea and tried a Denial of Service from one Windows machine to another then multiple machines to another and just used the Linux computer to monitor network traffic.

    Results..... we failed miserably (we got a good grade but failed our objective). The best we could manage was disabling the computer we were acting FROM. The system we attacked was unaffected.

    Was the target machine a server of some sort? What were you trying to bring down with your DoS?

  5. I like the Obama administration approach of trying to find common ground with the rest of the world and come together on things we can agree on. Rather than emphasizing our differences and seeing how many countries we can insult and make enemies out of it is nice to once again have countries acknowledging that they do indeed have at least some things they agree with us on and that we can talk civilly and work towards common goals.
    :thumbsup: :thumbsup: :thumbsup:
  6. Try a repair install:

    http://www.besttechie.net/kb/entry/3/

    That will keep your data intact.

    Or, if you have a windows disk to boot from:

    • # Open Command Prompt.
      # Type:
      diskpart
      # At the DISKPART prompt, type:
      list volume
      Make note of the number of the simple volume whose drive letter you want to assign, change, or remove.
      # At the DISKPART prompt, type:
      select volume n
      where n is the volume's number, whose drive letter you want to assign, change, or remove.
      # At the DISKPART prompt, type one of the following:
      assign letter=L
      Where L is the drive letter you want to assign or change.
      remove letter=L
      Where L is the drive letter you want to remove.

  7. About the same here. There's one cashier for up to ten self-checkout aisles. Any time you need help you can click for help, or any time there's a problem (like an item you've tried repeatedly to scan without success) the system automatically calls the cashier over.

    In the "no item limit" aisles the conveyor belt has electic eyes so: If you've scanned something it expects to "see" the item soon and warns you if it does not, and if you have NOT scanned something and put it on the belt it knows the item was not scanned and tells you to remove the item from the belt.

    In the "limited items" aisles the bags are right next to the scanner, resting on a scale. The system knows what items weigh so once you scan an item and put it in the bag it makes the comparison and gripes if it finds a discrepancy. In either case if you scan something large or heavy it "knows" and gives you the choice to place it directly in your cart. Put too many items directly in your cart though and it signals a cashier.

    Once you've scanned your items you can scan coupons (dropping them in a box), choose your payment method, choose cash back if desired, get any change, your receipt and any store coupons. If you're in the limited items aisle you put your bags in your cart, in the unlimited aisles you go to the end of the conveyor and bag your items.

    All the while that sole cashier is charged with ensuring everyone's being honest. :unsure:

    Wow, we only have the "limited item" ones. No conveyor belt. And we only have four terminals for the cashier to monitor.

    Back to the topic of online banking.. a lot of financial institutions are starting to use devices like GoID (or similar) :

    Go-ID-front2007_small.jpg

    Go ID security device adds an additional layer of security to your online account. When logging into Fifth Third Direct, you will be prompted to enter a six-digit numeric code after your normal user name and password. This six-digit code is provided by your Go IDSM device, a key chain sized device that generates a new number every 60 seconds.

    https://direct.53.com/help/53express/goid_faq.html

    That way, on top of needing your login credentials, you also need to have that device with you. This way, identity thieves would also have to steal your GoID.

  8. Pete:

    What is keepass? Where can I get it? Sounds like a good idea.

    There's KeePass and KeePassX. I've only ever used KeePassX. The way I used it was, I would have it generate long random passwords, and save them into an encrypted database. When I needed to log in, I just found the password I needed, and c+p my credentials. It's considered very useful because not even the user knows the password. It was just a random long series of letters and numbers. I then put my encrypted database onto an encrypted USB drive so I could have my passwords wherever I needed. It sounds like Pete does something similar. Here's some info on both pieces of software. They're both free. From what I can tell, KeePassX is based off of KeePass, and just makes it a cross platform. If you use Windows, you might prefer KeePass.

    KeePassX saves many different information e.g. user names, passwords, urls, attachments and comments in one single database. For a better management user-defined titles and icons can be specified for each single entry. Furthermore the entries are sorted in groups, which are customizable as well. The integrated search function allows to search in a single group or the complete database.

    KeePassX offers a little utility for secure password generation. The password generator is very customizable, fast and easy to use. Especially someone who generates passwords frequently will appreciate this feature.

    The complete database is always encrypted either with AES (alias Rijndael) or Twofish encryption algorithm using a 256 bit key. Therefore the saved information can be considered as quite safe. KeePassX uses a database format that is compatible with KeePass Password Safe. This makes the use of that application even more favourable.

    http://keepass.info/

    http://www.keepassx.org/

    Here's some screenshots of KeePass's various functions:

    http://keepass.info/screenshots.html

  9. Oh yeah, and if I've only got a couple of items? Self-checkout is a Godsend. Grab my stuff, checkout and GO, GO, GO! :)

    Self check-out! That is an amazing idea. I have not seen that implemented up here in Canada. Do they have security tags on all items to prevent people from just walking out the door with them?

    The way it works at my grocery store is you can't place an item in a bag without scanning it first. If the bag weighs more than it should (based on the scanned item) it yells at you. There's also cameras installed in all of the checkout terminals, and there's always a person stationed at the area if you need assistance.

  10. Ok, I'll bite... I do most of my banking online :D

    I pay my credit card and move money between checking/savings online. I also have an eTrade account so I can move money to/from that in connection with my banking accounts. It's just so convenient. And I can't have a car on campus, so it's such a hassle to walk to the bank. In fact, I only go to deposit checks or if I have a question/concern. I don't currently have it set up to pay my bills automatically... I still write checks, but I've been thinking about it. The only reason I don't right now is because I like being semi-aware of where my money is and how it's being used :rolleyes:

    You may or may not know it, but many banks now let you log on online without having to set anything up. That means if someone were to steal some of your personal information, they might be able to gain access to your account online even if you've never even banked online :ph34r: