Welcome to Eyes on FF!
>>> Click here to download Final Fantasy Ringtones
Oh no!
 

Post New Thread  Reply
 
LinkBack Thread Tools
Pureghetto
<(o'.'o)> ~ Pika pika
Pureghetto's Avatar
Location: Barrie, ON
#1
Talking Not your every day computer question, or 'thank God for Remote Administrator'

I just cleaned my brother's computer out of the windrv0.exe Trojan, or whatever it is (information is sketchy at best from google).

I tried to run hijackthis and other things but felt that it was either taking too long or just inefficient. The efficient thing I usually do is rip the hard drive out of the boxen and then (I don't know if this is safe but I usually don't care at this point) plug it into another boxen as a slave, then delete all of the offending files, run a virus scan, and viola clean file.

I did it a few years ago with my aunt's hard drive because the pagefile.sys file was infected and I couldn't clean it (duh).

Anyway, the problem is that I couldn't remove the drive. Because *I* didn't build the computer there were screws in the back side of the computer. Basically I considered the notion of removing the motherboard and everything just to remove a hard drive. That thought drove me to furious anger and I tried to unscrew it manually. Nope.

Eventually, and after possibly breaking one of my hard drives because by now I was careless and angry, I realised that I could install remote admin, log out (ie close all processes) and then have fun deleting files from the safety of another pc via the file transfer / telnet sessions.

Yay it worked! I'm currently doing some file scans just to be safe, but I don't see a dozen windrv0.exe processes and ms-1.exe up to ms-538.exe running any more.

But the problem remains that I can't remove the drive without tearing the pc in half. I really don't want to. Am I doomed?
Old 08-22-2007, 03:03 AM
Reply With Quote
Pureghetto is offline  
Discord
Banned
Discord's Avatar
Default

How about back-upping private data and formatting the entire drive down, the reinstalling the OS. Kills everything and makes the system run a whole lot faster.
Old 08-22-2007, 03:07 AM
Reply With Quote
Discord is offline  
Pureghetto
<(o'.'o)> ~ Pika pika
Pureghetto's Avatar
Location: Barrie, ON
Talking

Originally Posted by Discord ^
How about back-upping private data and formatting the entire drive down, the reinstalling the OS. Kills everything and makes the system run a whole lot faster.
I do a piss poor job of doing something as trivial as rebuilding a person's windows profile -- I don't trust myself to be able to get a person's system back to scratch.

My brother's windows profile is simple, I'll admit that, but that's too much trouble for a virus (often my method works).

Incidentally, I do want to be able to back up and reinstall *my* windoze C drive. Usually the image is too big to fit on a dvd rom, but if I can make it fit, is there an application to do that? An easy one? I've tried a few and was more confused by the UI than by the process.
Old 08-22-2007, 03:11 AM
Reply With Quote
Pureghetto is offline  
Namelessfengir
I'm a leaf on the wind...
Namelessfengir's Avatar
Location: nw Pa
Default

id back up to a blue ray as soon as i can afford a writer for them
Old 08-22-2007, 03:40 AM
Reply With Quote
Namelessfengir is offline  
o_O
Site Staff
nerd
o_O's Avatar
Location: New Zealand
Default

First, let me say I have a very small amount of experience imaging drives, so I probably don't know what I'm talking about.

There is quite a lot of imaging software available for Windows, the most well known being Norton Ghost. It's been several years since I used it, but I seem to recall that it is capable of taking an image and applying it remotely or from a second drive.

What I'd do is use dd on Linux to create an image file and compress it using p7zip or something:
Code:
$ dd if=/dev/sda1 of=~/image.img
$ 7z a ~/image.7z ~/image.img
Then to restore:
Code:
$ 7z x ~/image.7z
$ dd if=~/image.img of=/dev/sda1
I've used dd to reimage a flash drive and to restore the first sector of a flash drive before, and there were no problems.

I had a Gateway years ago that was pretty much impossible to get any component out of. I had to bend the case to take out the hard drive.
Old 08-22-2007, 03:56 AM
Reply With Quote
o_O is online now  
Post New Thread  Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 03:00 AM.

Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.0.0
Copyright ©2000 - 2007, Eyes on Final Fantasy.
Sean Robinson Design

Online Games | Scholarships | Tool Enhancers