If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below. |
|
|
Thread Tools | Display Modes |
#1
|
|||
|
|||
Did I have a virus?
Windows 98SE PC was working fine. I had been downloading some files,
e.g. RealPlayer. No apparent problems. Powered down. Later on, started it up again. There was some kind of error message at the DOS level where it said Abort, Retry, Fail. I said Abort. Then: Invalid System Disk etc etc. Drive C buggered. However, I booted up to DOS from a floppy and most (95%) of the folders and files on C appeared intact. But here's the important thing, certain key parts of the OS were gone! The VMM32 folder in Windows\System no longer existed, neither IOSUBSYS. Also, no MSDOS.SYS in drive C. But I had a very recent TrueImage image, so I just restored it. Since then I have been running virus checkers like there's no tomorrow on both PCs, but all come up clean. What could totally trash those folders, yet leave most of the hard drive files intact? My suspicion is a virus. MM |
#2
|
|||
|
|||
Did I have a virus?
Can you boot from C: now?
|
#3
|
|||
|
|||
Did I have a virus?
On Tue, 6 May 2008 08:00:22 -0700 (PDT), Fan924
wrote: Can you boot from C: now? Oh, it's fixed because I restored a TrueImage image from three days ago. But I don't know what caused the problem, that's the worry I have. This was not just one file that got trashed, but all or most of the essential OS that Windows needs in order to load. Exactly the kind of payload one might expect from a virus, I should think. MM |
#4
|
|||
|
|||
Did I have a virus?
A virus/spyware/malware forum is where you need to ask this kind of
question. There are many such forums out there. I think perhaps Aumha.net might be a good place to start. http://aumha.net/viewforum.php?f=27 -- Gary S. Terhune MS-MVP Shell/User www.grystmill.com "MM" wrote in message ... On Tue, 6 May 2008 08:00:22 -0700 (PDT), Fan924 wrote: Can you boot from C: now? Oh, it's fixed because I restored a TrueImage image from three days ago. But I don't know what caused the problem, that's the worry I have. This was not just one file that got trashed, but all or most of the essential OS that Windows needs in order to load. Exactly the kind of payload one might expect from a virus, I should think. MM |
#5
|
|||
|
|||
Did I have a virus?
"MM" wrote in message ... Windows 98SE PC was working fine. I had been downloading some files, e.g. RealPlayer. No apparent problems. Powered down. Later on, started it up again. There was some kind of error message at the DOS level where it said Abort, Retry, Fail. I said Abort. Then: Invalid System Disk etc etc. Drive C buggered. However, I booted up to DOS from a floppy and most (95%) of the folders and files on C appeared intact. But here's the important thing, certain key parts of the OS were gone! The VMM32 folder in Windows\System no longer existed, neither IOSUBSYS. Also, no MSDOS.SYS in drive C. But I had a very recent TrueImage image, so I just restored it. Since then I have been running virus checkers like there's no tomorrow on both PCs, but all come up clean. What could totally trash those folders, yet leave most of the hard drive files intact? My suspicion is a virus. MM If you listed all the stuff you downloaded...someone may know if it was potentially something dangerous. Here is some info on Real Player http://www.ibtimes.com/articles/2008...e-networks.htm What else were you downloading? |
#6
|
|||
|
|||
Did I have a virus?
On Tue, 6 May 2008 15:32:00 -0500, "philo" wrote:
"MM" wrote in message .. . Windows 98SE PC was working fine. I had been downloading some files, e.g. RealPlayer. No apparent problems. Powered down. Later on, started it up again. There was some kind of error message at the DOS level where it said Abort, Retry, Fail. I said Abort. Then: Invalid System Disk etc etc. Drive C buggered. However, I booted up to DOS from a floppy and most (95%) of the folders and files on C appeared intact. But here's the important thing, certain key parts of the OS were gone! The VMM32 folder in Windows\System no longer existed, neither IOSUBSYS. Also, no MSDOS.SYS in drive C. But I had a very recent TrueImage image, so I just restored it. Since then I have been running virus checkers like there's no tomorrow on both PCs, but all come up clean. What could totally trash those folders, yet leave most of the hard drive files intact? My suspicion is a virus. MM If you listed all the stuff you downloaded...someone may know if it was potentially something dangerous. Here is some info on Real Player http://www.ibtimes.com/articles/2008...e-networks.htm Alleged "badware", maybe. But hardly a contender for erasing one's key Windows OS files ! What else were you downloading? nclip.exe (network clipboard) SAPI4SDKSUITE.exe (Microsoft Speech) iview410_setup.exe (Irfan View) irfanview_plugins_410_setup.exe All checked with an anti-virus program. MM |
#7
|
|||
|
|||
Did I have a virus?
snip
If you listed all the stuff you downloaded...someone may know if it was potentially something dangerous. Here is some info on Real Player http://www.ibtimes.com/articles/2008...pyware-network s.htm Alleged "badware", maybe. But hardly a contender for erasing one's key Windows OS files ! What else were you downloading? nclip.exe (network clipboard) SAPI4SDKSUITE.exe (Microsoft Speech) iview410_setup.exe (Irfan View) irfanview_plugins_410_setup.exe All checked with an anti-virus program. True, Real Player is not a virus nor does it look like you were attempting to download any malware. There are of course some very unsafe websites out there... you know the kind I'm talking about... but obviously you know better than to go there... So was it a virus??? I don't know. Did the machine ...possibly... "hang" at shut down and did scan disk "repair" errors upon start up? That could have been what caused your situation... but I'm pretty sure you would have mentioned that... had that been the case. The bottom line is that you were wise to have a good back-up... so it looks like you are not the type of person to "let 'em get you down". |
#8
|
|||
|
|||
Did I have a virus?
On Wed, 7 May 2008 07:08:34 -0500, "philo" wrote:
snip If you listed all the stuff you downloaded...someone may know if it was potentially something dangerous. Here is some info on Real Player http://www.ibtimes.com/articles/2008...pyware-network s.htm Alleged "badware", maybe. But hardly a contender for erasing one's key Windows OS files ! What else were you downloading? nclip.exe (network clipboard) SAPI4SDKSUITE.exe (Microsoft Speech) iview410_setup.exe (Irfan View) irfanview_plugins_410_setup.exe All checked with an anti-virus program. True, Real Player is not a virus nor does it look like you were attempting to download any malware. There are of course some very unsafe websites out there... you know the kind I'm talking about... but obviously you know better than to go there... So was it a virus??? I don't know. Did the machine ...possibly... "hang" at shut down and did scan disk "repair" errors upon start up? No. While I do occasionally get a hang on Windows shutdown on either PC, it is rare and scandisk always fixes it. That could have been what caused your situation... but I'm pretty sure you would have mentioned that... had that been the case. The bottom line is that you were wise to have a good back-up... so it looks like you are not the type of person to "let 'em get you down". The main thing I *always* back up are my data files. If I am working on developing software (my chosen language is classic VB, but also Delphi) then I will zip the entire folder I'm working on and whack the zip onto a memory stick. Every day or two I then transfer the memory stick to a CD or DVD. But since I came across TrueImage (for free, on a magazine cover DVD) I use it all the time (having previously found Ghost to be a right PITA). TI is amazing! With my exchangable drive racks it means I can have umpteen experimental installations, including Ubuntu, SuSE etc, with just four physical drives. Also, TI makes an image in a matter of minutes (18gb hard drive), so I can run it while making a couple of tea. Nothwithstanding the above, it's a bit disconcerting to be hit with such a catastrophic problem for the first time in literally years. Almost like having one's home burgled. MM |
#9
|
|||
|
|||
Did I have a virus?
snip
Did the machine ...possibly... "hang" at shut down and did scan disk "repair" errors upon start up? No. While I do occasionally get a hang on Windows shutdown on either PC, it is rare and scandisk always fixes it. Aha!!! When scandisk "fixes" problems what it does is correct logical errors on the drive. Most of the time...there is no harm done... however...if you have ever noticed that .chk files are being written... that means file fragments are simply being assigned as a file. In some cases the file fragments are actually parts of necessary files that are now rendered useless...and in other situations they are merely unneeded or redundant information. So, if scandisk had run, converted some needed system file fragments to .chk files... your system would only have had logical errors corrected . That could have been what caused your situation... but I'm pretty sure you would have mentioned that... had that been the case. The bottom line is that you were wise to have a good back-up... so it looks like you are not the type of person to "let 'em get you down". The main thing I *always* back up are my data files. If I am working on developing software (my chosen language is classic VB, but also Delphi) then I will zip the entire folder I'm working on and whack the zip onto a memory stick. Every day or two I then transfer the memory stick to a CD or DVD. But since I came across TrueImage (for free, on a magazine cover DVD) I use it all the time (having previously found Ghost to be a right PITA). TI is amazing! With my exchangable drive racks it means I can have umpteen experimental installations, including Ubuntu, SuSE etc, with just four physical drives. Also, TI makes an image in a matter of minutes (18gb hard drive), so I can run it while making a couple of tea. Nothwithstanding the above, it's a bit disconcerting to be hit with such a catastrophic problem for the first time in literally years. Almost like having one's home burgled. MM Yes... so you were very smart for backing up your system! |
Thread Tools | |
Display Modes | |
|
|
Similar Threads | ||||
Thread | Thread Starter | Forum | Replies | Last Post |
Virus | katykitten04 | General | 3 | February 14th 07 03:21 AM |
Virus or what? | Jim | Shell | 1 | September 30th 04 09:01 AM |
virus | tommo | General | 5 | September 20th 04 08:43 AM |
virus | ricky | Software & Applications | 1 | August 14th 04 05:14 PM |
Virus | Ed | General | 3 | July 16th 04 06:45 PM |