Open Side Menu Go to the Top
Register
What to do next after I survived an attack ? What to do next after I survived an attack ?

11-22-2012 , 06:39 AM
Hi, first of all thank you for paying attention to my thread and hopefully help me.

Yesterday I was attacked, when I tried to download a program, I googled it and downloaded the first thing I saw. It resulted in the next time I turned on my computer my desktop was comepletely Black, could move my mouse and press " ctrl + alt + delete "

I opened in " safety mode " and ran some malware repair things. I got my computer back, and ran my normal anti virus program " avira " it found some infected files, I got rid of them. I have run some other checks, and was told there wasn`t anything left.

Rkill is also telling me this today:

Rkill 2.4.5 by Lawrence Abrams (Grinler)
http://www.bleepingcomputer.com/
Copyright 2008-2012 BleepingComputer.com
More Information about Rkill can be found at this link:
http://www.bleepingcomputer.com/forums/topic308364.html

Program started at: 11/22/2012 11:10:01 AM in x64 mode.
Windows Version: Windows 7 Home Premium Service Pack 1

Checking for Windows services to stop:

* No malware services found to stop.

Checking for processes to terminate:

* No malware processes found to kill.

Checking Registry for malware related settings:

* No issues found in the Registry.

Resetting .EXE, .COM, & .BAT associations in the Windows Registry.

Performing miscellaneous checks:

* No issues found.

Checking Windows Service Integrity:

* FontCache => %SystemRoot%\system32\svchost.exe -k LocalService [Incorrect ImagePath]

Searching for Missing Digital Signatures:

* No issues found.

Checking HOSTS File:

* No issues found.

Program finished at: 11/22/2012 11:10:07 AM
Execution time: 0 hours(s), 0 minute(s), and 5 seconds(s)


Now that I think I can use my computer again I can see that "I" have visited a ****load of different sites such as: " Bank of America " " Craigslist " ect. ect.
Also

I am now wondering what I should do next ?

Things that come to my mind..

- Get a new creditcard ?
- Contact my bank ?
- Change my passwords for my email acc. ?

Poker related stuff

Luckily it was my laptop that was attacked and not my PC which is the one I use to play on. I have a special email acc. I have never accessed from laptop. But I would still like to shut down my stars acc. for security reasons. Stars want me to send them a Photo ID because I am writing to them from a new email acc. that isn`t verified, but I am thinking if I do that the hacker might be able to get a hold of these and use them against me ?

Things that still bothers me:
I have installed Internet Explorer 10 so is this why ?
Spell check when I write posts here.
Letters jumping up and down
What to do next after I survived an attack ? Quote
11-22-2012 , 12:36 PM
It's hard to say what if anything was compromised. It's not a bad idea to be over cautious and change all your bank / investment / credit card accounts. It's actually probably a good opportunity to install KeePass and setup all your accounts. But, first make sure you are 100% clean. I know others don't think it's necessary, but I would reinstall windows if you can do it quickly.
What to do next after I survived an attack ? Quote
11-22-2012 , 07:50 PM
I agree with jmark. Format your hard drive, reinstall windows and change all your passwords. Antivirus software can't always catch everything, especially if the malware you downloaded is new or customized. Another tip: Stop using Internet Explorer (it's a common malware attack vector). Use Google Chrome or FireFox.
What to do next after I survived an attack ? Quote
11-23-2012 , 02:41 AM
Hey

Thank you for your advice, unfortunately I am abroad for approx a month more, so reinstalling windows isn`t possible.

I have changed from IE to Chrome.

Anything else that can help me when the big clean up isn`t possible for a month or so ?

Also I know emails to my hotmail acc. is delayed for hours, can that be an effect or is it just windows live or what the name is that have some problems ?
What to do next after I survived an attack ? Quote
11-23-2012 , 05:20 AM
Quote:
Originally Posted by Real Name
I agree with jmark. Format your hard drive, reinstall windows and change all your passwords. Antivirus software can't always catch everything, especially if the malware you downloaded is new or customized. Another tip: Stop using Internet Explorer (it's a common malware attack vector). Use Google Chrome or FireFox.
lol

The only thing you missed is to have incinerate your computer and go and live in another country with a new identity.

You don't need to change passwords or cancel credit cards if none of these were used during the brief time that the computer was (apparently) compromised.

It would have been best to seek help directly because now we will never know what actually hit your computer and if it was really malware and of which type.
What to do next after I survived an attack ? Quote

      
m