Berkeley CSUA MOTD:Entry 36377
Berkeley CSUA MOTD
 
WIKI | FAQ | Tech FAQ
http://csua.com/feed/
2025/07/08 [General] UID:1000 Activity:popular
7/8     

2005/2/23-24 [Computer/SW/Security] UID:36377 Activity:very high
2/23    Hi, my girlfriend's mom is in Taiwan.  Her computer stopped booting;
        it shows BIOS, but it won't show the WinXP screen.  So, it sounds like
        a virus (less likely, partial drive failure / OS corruption, but let's
        assume it's a virus).
        She is concerned about recovering her files.
        Normally if I were on-site I'd just pull out the drive, put it in an
        enclosure, and bam.
        Is there any convenient way for her to recover her files without my
        being on-site?  I am thinking something along the lines of a bootable
        CD-ROM I can mail her that could mount an NTFS partition and also a
        USB memory key.  It would show an easy Explorer-like tree with which
        she can explore the C: drive and copy files over.
        \_ The only convenient way I can think of is for her to buy a new
           computer, then open up the old computer, take the disk out and
           put it in the new computer as a secondary drive. Even this is
           not "easy", but it is relatively straightforward for a non-
           technical user. Can you trust her to be able to operate a
           screwdriver? If not, she needs to bring it in to a data
           recovery service, which will be much more expensive.
        \_ have somebody in Taiwan make a KNOPPIX CD.
           You make the same knoppix CD here and talk her through it.
           She copies the files from HDD to the USB key.
           In these situations avoid the screwdriver if you can.
           \_ Thanks, I'm downloading KNOPPIX 3.7 English now and will try it
              out.  I'll let motd know how it goes.
              \_ Also, if you could get remote access to her computer,
                 that would probably make things easy for you. You might try
                 setting up a remote access tunnel. Have her run (as root)
              \_ Also, if you get remote access to her computer,
                 that would probably make things go faster.
                 You might try setting up a ssh tunnel like this:
                  Have her type:
                  (at the boot: prompt) knoppix 2 vga=normal
                  # passwd  (to set the root password)
                  # /etc/init.d/ssh start
                  # ssh -R 2222:localhost:22 account@yourserver
                  then you ssh to you@yourserver and run
                  $ ssh -p 2222 root@yourserver
                  This should give you root on her server. I haven't tried
                  this specificaly but I'll test it out later tonight.
                  Then you ssh to yourserver like normal and run
                  $ ssh -p 2222 root@localhost
                  at the password prompt, type her new root password.
                  This should give you knoppix root on her computer.
                  I just tested it and it works. -brett
                  \_ Sounds cool.  She gets net via PPPoE, though.  So I guess
                     I will need to fish for the PPPoE settings in KNOPPIX and
                     tell her how to do that?
                     \_ D'oh. She doesn't she have a firewall/router device?
                        That could explain how her computer got comprimised.
                        \_ That's what I told my gf.  But my gf does Windows
                           Remote Assistance all the time with her family and
                           didn't want to mess with unblocking ports.
                           ...
                           "It ain't broke, so why fix it?"
                           "Because you might get p0wn3d one day"
                           "But I have everyone on Windows Automatic Update"
                           "Okay"
                           "Dang, I got p0wn3d!"
                           The real answer is that we need to test the port
                           unblocking in the U.S., and move them to the
                           D-Link gateway next time we visit Taiwan.
                           \_ Your girlfriend should either:
                              1) fix it herself now (or)
                              2) follow your advice ahead of time.
                              3) Get Macs for her parents.
                            Your gf doesn't understand inbound/outbound rules:
                        "If you are using Network Address Translation (NAT) in a
                         home environment, you can use Remote Assistance without
                         any special configurations."
                         \_ You have never had a girlfriend, have you?
        \_ Doesn't she have any computer savvy acquaintances in Taiwan?
           Isn't Taiwan a high tech island?
           \_ Friends we used to ask are in gr4d sk00l in the U.S.
ERROR, url_link recursive (eces.Colorado.EDU/secure/mindterm2) 2025/07/08 [General] UID:1000 Activity:popular
7/8     

You may also be interested in these entries...
2013/10/24-11/21 [Computer/Companies/Apple] UID:54747 Activity:nil
9/19    "No, A Severed Finger Will Not Be Able to Access a Stolen iPhone 5S"
        http://mashable.com/2013/09/15/severed-finger-iphone-5s
        I'm sure the Apple QA department has tested extensively that a severed
        finger will not be able to access a stolen iPhone 5S.
        \_ It doesn't matter whether or not a severed finger can be used.  It
           matters whether or not a robber thinks that a severed finger can be
	...
2013/6/6-7/31 [Politics/Foreign/Asia/China, Computer/SW/Security] UID:54690 Activity:nil
6/6     Wow, NSA rocks. Who would have thought they had access to major
        data exchangers? I have much more respect for government workers,
        crypto experts, mathematicans now than ever.
        \_ flea to Hong Kong --> best dim-sum in the world
           \_ "flee"
        \_ The dumb ones work for DMV, the smart ones for the NSA. If you
	...
2012/8/26-11/7 [Computer/SW/Security] UID:54465 Activity:nil
8/26    Poll: how many of you pub/priv key users: 1) use private keys that
        are not password protected 2) password protect your private keys
        but don't use ssh-agent 3) use ssh-agent:
        1) .
        2) ..
        3) ...
	...
2012/8/29-11/7 [Computer/SW/Security] UID:54467 Activity:nil
8/29    There was once a CSUA web page which runs an SSH client for logging
        on to soda.  Does that page still exist?  Can someone remind me of the
        URL please?  Thx.
        \_ what do you mean? instruction on how to ssh into soda?
           \_ No I think he means the ssh applet, which, iirc, was an applet
              that implemented an ssh v1 client.  I think this page went away
	...
2012/9/20-11/7 [Computer/SW/Unix, Finance/Investment] UID:54482 Activity:nil
9/20    How do I change my shell? chsh says "Cannot change ID to root."
        \_ /usr/bin/chsh does not have the SUID permission set. Without
           being set, it does not successfully change a user's shell.
           Typical newbie sys admin (on soda)
           \_ Actually, it does: -rwsr-xr-x 1 root root 37552 Feb 15  2011 /usr/bin/chsh
	...
2012/8/7-10/17 [Computer/SW/Security] UID:54455 Activity:nil
8/6     Amazon and Apple have lame security policies:
        http://www.wired.com/gadgetlab/2012/08/apple-amazon-mat-honan-hacking/all
        "First you call Amazon and tell them you are the account holder, and
         want to add a credit card number to the account. All you need is the
         name on the account, an associated e-mail address, and the billing
         address. "
	...
2012/5/8-6/4 [Computer/SW/Unix] UID:54383 Activity:nil
5/8     Hello everyone!  This is Josh Hawn, CSUA Tech VP for Spring 2012.
        About 2 weeks ago, someone brought to my attention that our script
        to periodically merge /etc/motd.public into /etc/motd wasn't
        running.  When I looked into it, the cron daemon was running, but
        there hadn't been any root activity in the log since April 7th.  I
        looked into it for a while, but got lost in other things I was
	...
2012/2/9-3/26 [Computer/SW/Security, Computer/SW/Unix] UID:54305 Activity:nil
2/9     Reminder: support for mail services has been deprecated for *several
        years*. Mail forwarding, specifically .forward mail forwarding, is
        officially supported and was never deprecated.
        \_ There is no .forward under ~root.  How do we mail root and how do
           we get responses?
           \_ root@csua.berkeley.edu is and always has been an alias.
	...