LinuxQuestions.org
Latest LQ Deal: Latest LQ Deals
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 01-01-2011, 07:17 AM   #1
dudeman41465
Member
 
Registered: Jun 2005
Location: Kentucky
Distribution: Debian
Posts: 794

Rep: Reputation: 56
My One Windows PC Nuked a 500 GB Hard Drive


My wife and I have been running Linux on our laptops for a long time now. We had a desktop running Windows XP with a printer and shared 1 TB external hard drive attached to it. The internal hard drive was a 500 GB hard drive. It was previously an external WD MyBook but I accidentally broke the USB board while re-arranging the house one day so it became internal.

Anyway, so it's been running XP for a long time now, no major issues. My account was an administrator, my wife's was limited. My wife received an e-mail and apparently her WoW account had been hacked. I'm not sure how they would have hacked her account; the password was not something obvious that would have been in a Brute Forcer dictionary, and her limited account should have prevented the installation of anything like a keylogger, not to mention my scheduled virus scan had reported nothing. So she received an e-mail saying her account has been hacked and she clicked a link it had to go "re-activate" her account. Apparently Firefox told her it was a malicious site so she closed the browser and came and woke me up (it was early in the morning). I immediately changed all of the passwords on everything, online bills, banks, wireless, etc, and she eventually got her WoW account back. Later that day she started complaining about not being able to delete some of the icons on her desktop (they were in "All users" so a limited account couldn't modify them), so being lazy I gave her administrative rights so she could customise her profile a little more, with the intent of removing them once she had finished. 10 minutes later she got a blue screen. Not a BSOD, just a plain blue screen. Upon reboot I was presented with "No bootable volume found" and not even the BIOS on the machine could detect any information other than the transfer speed of the hard drive. Capacity and everything was unknown.

Prior to this I'd had no problems with the hard drive. No data loss, no noises, scandisks came up clean, so my suspicion is that she had some kind of funk that she'd managed to download onto her profile that was unable to act according to its programming until I gave her admin rights. I've thrown the old 80 GB hard drive back in it and installed Ubuntu 10.10 x64, but I'd like to recover and reuse the 500 GB if possible. Has anybody heard of anything like this and know of anything I can do to troubleshoot the 500 GB hard drive?
 
Old 01-01-2011, 07:27 AM   #2
TobiSGD
Moderator
 
Registered: Dec 2009
Location: Germany
Distribution: Whatever fits the task best
Posts: 17,148
Blog Entries: 2

Rep: Reputation: 4886Reputation: 4886Reputation: 4886Reputation: 4886Reputation: 4886Reputation: 4886Reputation: 4886Reputation: 4886Reputation: 4886Reputation: 4886Reputation: 4886
I would say that the malfunction of the harddisk and phishing attempt were just pure conicidence. I never heard of a software that destroyed harddisks.
If your BIOS isn't able to detect the harddisk, your chances of recovering the drive are very low.
 
Old 01-02-2011, 03:49 PM   #3
taylorkh
Senior Member
 
Registered: Jul 2006
Location: North Carolina
Distribution: CentOS 6, CentOS 7 (with Mate), Ubuntu 16.04 Mate
Posts: 2,127

Rep: Reputation: 174Reputation: 174
If I understand correctly the BIOS is not correctly detecting the 500 GB internal drive(?)

First I would disconnect and reconnect the 500 GB hard drive cable from the drive and from the motherboard. Yes I know nothing has happened to the cable - I have said the same thing and finally determined that it was a cable problem.

I would then unplug the power cord and network cable from the PC then pop the coin battery on the motherboard out of its socket. Wait a couple of minutes and put the battery back. That should clear the BIOS totally. Then try booting the machine again. It should go through its process of discovering what is hooked to the system. I have had good luck with this process when I get one of my old Dell desktops hosed.

Good luck,

Ken
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Moving files from a Linux hard drive to a Windows Vista Premium hard drive WolfMan51 Linux - Hardware 5 07-12-2011 09:19 AM
500 GB Sata Hard Drive - volume issue >> shows 452 GB bskrakes Linux - Hardware 25 03-24-2008 11:45 PM
LaCie 500 usb external hard drive sheine Linux - Hardware 13 03-06-2008 01:45 PM
Root Drive Nuked - Please Help mtaft Linux - General 3 05-13-2006 04:27 PM
how to install a usb 2.0 hard drive (500 GB) on red hat WS3 U4 cmolina Linux - Hardware 2 08-08-2005 02:04 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:24 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration