15a80 Fixing relatives' computers, oh what joy... - bargainshare.com

Welcome Guest

( Log In | Register )


bargainshare


 
Reply to this topicStart new topic

 

 Fixing relatives' computers, oh what joy...

dboy
+ post 1-4-11, 8:00am | Post #1
Visited the inlaws over the holidays. Just have to share the craziness...

First off, my father in law is the VP of IT at [redacted] - let's just say a company that you have certainly heard of. Second, a couple years ago their hard drive died and the lost a ton of stuff - pictures, etc - since they had no backups. They had me pick out a new machine for them, so I got a decent (at the time) Dell laptop and set it up w/ an external drive to do nightly backups. Oh, and added a USB hub since the laptop only had 2 USB ports but they had wireless keyboard/mouse, the HD, printer, digital camera to hook up.

Forward to now... while there, my MIL complained that her internet was so slow. We were using our laptop on their wifi and had no issues, so I suspected her machine. Went over to check it out and about crapped my pants. First, the backup drive was disconnected. Turns out it's been disconnected since July and she'd just been ignoring the daily "backup failed" message. Second, she had so many toolbars installed in IE that half the screen was gone. Third, I see several antivirus and antispyware icons in the system tray. So I start digging.

The first antivirus I looked at (something I'd never heard of, but it had a red flashing icon so I figured it might be important to look at) said there were 469 viruses detected. Well, actually not. It was counting ad-related cookies as problems. closed it and looked at Norton. It wasn't actually doing anything since it had expired. Closed it and looked at AVG. It said 1 trojan found, and it appeared to be a beast. Forget the name, but a quick google said that no AV could get rid of it, but kapersky had a little program that would - but with the side effect of sometimes making the computer not boot.

Closed AVG. Uninstalled all 3 AVs (since AVG was old and nagging to pay) and installed MSE. Also uninstalled all the toolbars. First ran a full backup to be safe. That took a few hours. Then stared MSE doing a full scan and went to bed.

Next morning MSE was just showing the one trojan. Let it try removing it, but no dice. So then I ran the kapersky tool and rebooted. Trojan gone.

Made sure everything was conencted to the USB hub so she only had 1 cable to mess with when they took the laptop anywhere and told her to quit installing stuff.

Later that day she asked if we had a Citi bank account. I said we did, but why? Answered that she'd just gotten an email about an account problem but they didnt' have a citi account so wondered if it could be about us. bang.gif!
dboy
Gold Member


PM
****

 
Quote PostGo to the top of the page
Monga
+ post 1-4-11, 8:18am | Post #2
lol.gif
Monga
Platinum Member


PM
*****

 
Quote PostGo to the top of the page
garsh
+ post 1-4-11, 8:38am | Post #3
console.gif
garsh
Captain Obvious


PM
Group Icon

 
Quote PostGo to the top of the page
NARC
+ post 1-4-11, 9:11am | Post #4
oh dboy, I'm so sorry. You set up remote access so that you don't have to be there for the next time they have questions, right?
NARC
Arresting


PM
*****

 
Quote PostGo to the top of the page
garsh
+ post 1-4-11, 9:59am | Post #5
Or better yet, setup a VM and have it reset back to a known good state every time they logoff or reboot.
garsh
Captain Obvious


PM
Group Icon

 
Quote PostGo to the top of the page
NARC
+ post 1-4-11, 10:00am | Post #6
lol, that would work
NARC
Arresting


PM
*****

 
Quote PostGo to the top of the page
TheDiggler
+ post 1-4-11, 11:01am | Post #7
Switch their user account to a non-Administrative account. They won't be able to install software anymore, which should severely limit their ability to F things up. smile.gif
TheDiggler
***


PM
****

 
Quote PostGo to the top of the page
crimson
+ post 1-4-11, 1:43pm | Post #8
QUOTE (TheDiggler @ 1-4-11, 2:01pm) *
Switch their user account to a non-Administrative account. They won't be able to install software anymore, which should severely limit their ability to F things up. smile.gif

This! I did this to my folks, they haven't noticed the difference, and it alleviated a ton of headaches for me. tongue.gif
crimson
evil little piggy & tease?


PM
*****

 
Quote PostGo to the top of the page
penguin110
+ post 1-4-11, 1:52pm | Post #9
Reminds me of the times (fondly now) that I had to run over and help my father (rest in peace) with computer issues.
penguin110
Legal Eagle


PM
*****

 
Quote PostGo to the top of the page
Alan
+ post 1-4-11, 3:47pm | Post #10
lol.gif lol.gif lol.gif Par for the course.

dboy, next time also boot off of a Live CD and let it scan the system. Rootkits will not be found when scanning from within Windows. Many vendors have free Live CD's which are bootable anti-virus/malware/trojan scanners. The one's I typically use are AVG, F-Secure, Kaspersky and, my favorite, Dr. Web.
Alan
Kablooie


PM
*****

 
Quote PostGo to the top of the page
BlueTDimly
+ post 1-4-11, 7:55pm | Post #11
You need one of these:
BlueTDimly
Platinum Member


PM
*****

 
Quote PostGo to the top of the page
steltek
+ post 1-5-11, 1:21am | Post #12
QUOTE (dboy @ 1-4-11, 10:00am) *
Later that day she asked if we had a Citi bank account. I said we did, but why? Answered that she'd just gotten an email about an account problem but they didnt' have a citi account so wondered if it could be about us. bang.gif!


Hopefully she will remember you when she gets the happy news via email that she's won millions in the Nigerian National Lottery! mango.gif
steltek
Gold Member


PM
****

 
Quote PostGo to the top of the page
dasnufus
+ post 1-5-11, 1:28pm | Post #13
limited user acct + remote access = less headaches.


dasnufus
Hi


PM
****

 
Quote PostGo to the top of the page




1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:
 
Reply to this topicStart new topic

© 2011 bargainshare.com, All Rights Reserved | Terms of Service | Privacy Policy

Lo-Fi Version

RSS Time is now: 5-21-13, 7:47am
0