NET BUS HELP PAGE
KEEP YOUR COMPUTER AWAY FROM HACKERS!!!


Guestbook added on 4th Oct 1998


To Hackers: Sorry, I just wanna help some innocent people. You will still have enough computers to play with afterall. So, please don't disturb this little piece of oasis. Thanks

Hi. I'm NetBus God. I set up this page to help people out of NetBus, BOserve and Master Paradise. Why do I help people? Because once I was hacked, then someone helped me out of this. So now I'm doing this job now. Before I've made this homepage, I've helped about 20 people out of this. Quite tired of typing "Go to start, shut down and restart in MS DOS mode.. blabla". So I decided to set up this page so that i don't have to type too much anymore. Ok, here are the solutions.


Hacked? Yes, hacked. When you are online, everyone with those hacking programs can access your computer, control everything like mouse, keyboard, CD ROM, and can read, delete, rename your files etcetc.


ONCE YOU'VE BEEN HACKED, YOU SHOULD CHECK FOR ALL OF THE FOLLOWINGS, COS YOU WOULD NEVER KNOW WHO HAVE ACCESSED YOUR COMPUTER FROM THE DAY YOUR COMPUTER WAS INFECTED, AND YOU WON'T KNOW WHAT THEY'VE PUT IN IF YOU DON'T CHECK.



If your computer is cleaned, I will not contact you anymore. If it is not, I will post in the guestbook, or I will connect to your computer to tell you, or please leave me your email address, I will reply you. If you wanna be my friend, leave a message in the guestbook please. Comments and new methods on advanced cleaning up of these kind of "viruses" are welcomed.


Please sign my guestbook.

NetBus


I don't really know how it works. I only know that, I can connect to your computer and control everything through your IP address and a file in your computer. You would have received a file with 461KB. Then when you ran it, seems that nothing had happened, and you just thought that it's got something wrong with the file. But actually it has done something. It has copied itself to C:\Windows\. Whenever you start your computer, the file is activated. That's why you cannot delete it when you are running Windows. This is what you should do.

Bookmark this page so that you can come back to tell me to check your machine.

Get the file name (I should have told you)

*****One little tip***** If the file icon is not changed, it should be:


Restart the computer in MS DOS mode

In C:\Windows\ type del *filename.extension*
Like if the file name is explore.exe, type del explore.exe

Type exit

Come back online and sign the guestbook. I will check if you're cleaned or not.

You are saved!



Please sign my guestbook.


BO (Back Orifice) (BOserve)


Well. All I know is that it works through registry. Here is the definition from the program's readme.
Back Orifice (BO) is a client/server application which allows the client software to monitor, administer, and perform other network and multimedia actions on the machine running the server. To communicate with the server, either the text based or gui client can be run on any Microsoft Windows machine. The server currently only runs in Windows 95/98.
Again, you've received a stupid 122KB file from someone. And you've run it, and seemed that nothing had happened. But you were actually F**KED! Anyone can connect to your IP address and play with your computer!
To kick this out of your computer, you can simply download this antigen to clean it. (I hope that you've got winzip.) I recommend you to run the antigen first, then do the followings.
*****One little thing. All my friends and I could not run this antigen properly. Different error messages appeared everytime I ran it. So you really MUST do the following to check.

Click Start, Run, regedit

Choose HKEY_LOCAL_MACHINE

Then follow this:

SOFTWARE
Microsoft
Windows
CurrentVersion
RunServices

Delete all the files called .exe (No file name, only got extension)

Run the antigen again

DONE!!!!


Please sign my guestbook.


Master Paradise


Sorry, I'm too busy right now, I will update this part later. Bookmark this page, and check later. This is really important!



Please sign my guestbook.

Read my guestbook.


If your computer is cleaned, I will not contact you anymore. If it is not, I will post in the guestbook, or I will connect to your computer to tell you, or please leave me your email address, I will reply you. If you wanna be my friend, leave a message in the guestbook please. Comments and new methods on advanced cleaning up of these kind of "viruses" are welcomed.

NetBus God
All rights reserved. 1998


PennyWeb is a unique click-thru banner program which enables you to have your own click-thru program to get maximum exposure on the web. As your banner will appear on more and more sites, you will attract more viewers, and generate more business. Whether you have a small or large business we know we can increase the visibility of your site.
With PennyWeb you can promote your site at no risk with guaranteed visitors, generate income by hosting banners, or do both at the same time.

This is truly a win-win situation !

WEBMASTER READY TO KNOW MORE ABOUT PENNYWEB ?

PENNYWEB


� 1997 Copyright PENNYWEBTM , All Rights Reserved.