Toon posts:

Serious trouble with Windows XP Security Policies

Pagina: 1
Acties:
  • 189 views sinds 30-01-2008

Verwijderd

Topicstarter
First of all, I'm sorry to have to post in english, but I received this site address from a dutch friend, and I don't know any Dutch. Second of all, please try to help me, as I am getting more and more desperate by the minute. Third of all, well, although this may sound a little vulgar, get ready for one helluva loooooong post. Ok, here goes.

I recently got infected with the Blaster worm, but I was very lucky to get the correction patch and the removal tool from Symantec within the first 24 hours of infection. Nonetheless, a little ignorance on my side lead me to think that the worm had somehow damaged the Task Manager window, because all I'd see was a list of the processes being run (a friend of mine told me later that I just had to double click on it to give it back its old appearance). Since my ignorance lead me to think this, and I couldn't think of any other way to fix this "problem" I decided to reinstall Windows over the old installation my computer already had. When I was installing though, I stupidly chose to make a fresh new installation instead an upgrade (which could have probably solved my "problem"). The thing is, since I'm the actual owner of the PC I'm typing this on right now, my account was labeled by WinXP as Owner in the Documents and Settings folder, instead of DominicanZero, which is the logon name I chose in the first place. But since this PC is also used by everyone here, and I keep very important files in it, and my little brother knows how to tamper among folders to get anywhere on a PC running Windows and also likes screwing around with my stuff, I decided to take advantage of WinXP's security policies, and blocked all access to my user folders from literally ANY user, except for the Owner himself. (NOTE: I disabled the "Simple File Sharing" option in the Folder Options menu to enable the more serious security protocols and policies.) Now here comes the REAL problem: When I made the new installation, the system didn't ask me to create an Owner account. Thus, all my folders and files are now locked in the Owner folder. I know they're there, since I allowed the Administrators and Power Users groups to be able to read and list the files, but not to execute them. Even if I log on as an Administrator, I still can't access my files, and when I right click on them, and I choose the Security tab, and this is what shows up:

http://d-zero4.tripod.com/images/properties.txt

(Although it's named as a TXT, that link points to an image, but I had to rename it because Tripod's free service doesn't allow remote linking.)

As you can see, the security policies I applied before the new installation appear as Accounts Unknown. Now here's my question:

1. Can anybody suggest me a method of getting to those files, at least to transfer them to another hard drive?
2. If not, can somebody suggest a way of reactivating the Owner account?
3. Finally, if nothing else, can somebody tell me how to decrypt the information shown as Accounts Unknown in the Security tab so I can override the security settings?

One other thing, that's what really gets me desperate around this: ALL my college assignments, as well as zipped versions of the Cisco Systems CCNA Certificate Curriculum FOR ALL 4 SEMESTERS are all locked in there, and my classes start NEXT WEEK... I know it's all on the web, but the site has some serious flash stuff, and my modem's been being a beetch lately, so it's kinda hard to access it from the web... Besides, my collection of images (wallpapers, avatars, scanned drawings, and all around miscellaneous images), icons, cursors and Mugen works are all stored in there too, as well as all my music files and my downloaded videos, movies and games (I don't like to install games in the Program Files folder, it's too vulnerable to hacks from evil little brothers and manipulation from ignorant-but-self-called-know-it-all adults). In other words, my media and entertainment center, as well as ALL my college stuff, is all locked in there. What's even more desperating is the fact of knowing that everything's in there, but you can't access it. |:( :'(

Thanks in advance.

  • Varienaja
  • Registratie: Februari 2001
  • Laatst online: 14-06 16:43

Varienaja

Wie dit leest is gek.

I think this topic will be locked, because it's English and because it's a typical search-question.

I think you should use the option 'take ownership'. I don't exactly know where you can find this, but if you play around a little in the file properties and security properties you'll find it. Good luck!

Siditamentis astuentis pactum.


  • momania
  • Registratie: Mei 2000
  • Laatst online: 23:40

momania

iPhone 30! Bam!

Ok, I'm going to close this topic anyway, because this is a Dutch forum.
But I will try to help you as much as posible here ;)

First of all:
Did you apply the Mblaster patch on you're new windows setup and tried any of the removal tools or online scanners? If not, do so.
You can find a list of them here: RPC crash/shutdown 'vraag bak' - deel 2

Second:
By setting the simple file sharing off, you can now take ownership of all the files on the system.
Here's the how-to: HOW TO: Take Ownership of a File or Folder in Windows XP

Third:
You can try to reinstall windows xp the way you were planning to do it: upgrading.
Then you will probably have 2 windows xp version installed on you're pc, but you wil be able to dual-boot your machine. If not, try to boot from the windows xp cd and choose for windows recovery. In the windows recovery console try running 'bootcfg'. How it works it told in here: Problemen met booten, hoe kan je ze oplossen. It's in Dutch but I don't think it's that hard to understand ;)

In the upgraded version of you're windows xp you can again try to take ownership of the files.

Another option is that the files are encrypted.
How to avoid that is written here: HOW TO: Remove File Encryption in Windows XP

Last option is to use several data recovery tools that you can find by google-ing for them.
[google=data,recovery]
[google=freeware,data,recovery]
[google=data,recovery,software]
[google=undelete]

Maybe one of the ohter moderators have something to add to this reply if I've forgotten something they come up with, so please take a look at it later on if you didn't succeed.

Anyway, please let me know if you succeeded in getting youre files back by icq (55681290) or mail (momania [at] tweakers [dot] net)

And I hope you understand that I have to apply the policy of this forum on this topic and had to close it :)

Good luck! ;)

[ Voor 88% gewijzigd door momania op 18-08-2003 18:03 ]

Neem je whisky mee, is het te weinig... *zucht*


  • F_J_K
  • Registratie: Juni 2001
  • Niet online

F_J_K

Moderator CSA/PB

Front verplichte underscores

I think momania has been called away to do somewthing else so I'll say something about it:

This question is answered in the FAQ of Windows Operated Systems: 'access denied' when opening a folder? - in Dutch offcourse.

What you want to do is take ownership of the files and directories: HOW TO: Take Ownership of a File or Folder in Windows XP. (Wich only works when you log on with administrator rights and when simple filesharing has been disabled, but you allready did that). After taking ownership, you can adjust the NTFS rights so that you (or the user you logged on as) can access the files

I only hope you didn't use encryption, because then you're in big trouble when you haven't back-upped the key (you would have to contact a company to remove the encryption, but even then it's a gamble). But if you did backup a key: HOW TO: Remove File Encryption in Windows XP

Good luck, I hope you can recover your files. And be more carefull next time and make backups: the next time it might be a hardware failure ;)

edit:

Whehe, and then we reply at just about the same time :+

[ Voor 3% gewijzigd door F_J_K op 18-08-2003 21:17 ]

'Multiple exclamation marks,' he went on, shaking his head, 'are a sure sign of a diseased mind' (Terry Pratchett, Eric)


Dit topic is gesloten.