I have a sneaky suspicion...

GEC: Discuss gaming, computers and electronics and venture into the bizarre world of STGODs.

Moderator: Thanas

Post Reply
User avatar
EmperorMing
Sith Devotee
Posts: 3432
Joined: 2002-09-09 05:08am
Location: The Lizard Lounge

I have a sneaky suspicion...

Post by EmperorMing »

That my FTP was hacked yesterday. I did a reboot and was prompted for a new password on my own XP box, which is something I had configured not to do. The default home page was set top something really strange, and the system could not get back onto the network or the internet.

At least everything was intact, so I wiped the drive the OS is on and reinstalled.

I had left a certain 'port' open on my router to run the FTP, and it's mosty likely they came in there. :evil:

Next time, however...
Image

DILLIGAF: Does It Look Like I Give A Fuck

Kill your God!
User avatar
TrailerParkJawa
Sith Acolyte
Posts: 5850
Joined: 2002-07-04 11:49pm
Location: San Jose, California

Post by TrailerParkJawa »

That sucks. I bet it feels a bit erie to know someone was sneaking around your system.
MEMBER of the Anti-PETA Anti-Facist LEAGUE
User avatar
EmperorMing
Sith Devotee
Posts: 3432
Joined: 2002-09-09 05:08am
Location: The Lizard Lounge

Post by EmperorMing »

Yeah, pissed me off a bit.

However, when I set it up, I had no illusions that it was completely safe.

One reason why my boot drive was only 5 gb; easy to wipe in case something like this happens.

I'll bring it back up, just m,ore secure than what it was previously. :wink:
Image

DILLIGAF: Does It Look Like I Give A Fuck

Kill your God!
User avatar
Chardok
GET THE FUCK OFF MY OBSTACLE!
Posts: 8488
Joined: 2003-08-12 09:49am
Location: San Antonio

Post by Chardok »

In the same vein, what IYO, is the best anti-hack/antivirus software? Mcafee? norton? Combo of zonealarm and something else? thoughts?
Image
User avatar
Faram
Bastard Operator from Hell
Posts: 5271
Joined: 2002-07-04 07:39am
Location: Fighting Polarbears

Post by Faram »

Chardok wrote:In the same vein, what IYO, is the best anti-hack/antivirus software? Mcafee? norton? Combo of zonealarm and something else? thoughts?
Buy a cheap NAT device. Dlink and Linksys has them that eliminates a lot of script kiddies.

I have f-secure as anti virus solution and it works fin for me. I have read a lot of bad things about the latest releases of norton and symantc in general so I would stay avay from their products.
[img=right]http://hem.bredband.net/b217293/warsaban.gif[/img]

"Either God wants to abolish evil, and cannot; or he can, but does not want to. ... If he wants to, but cannot, he is impotent. If he can, but does not want to, he is wicked. ... If, as they say, God can abolish evil, and God really wants to do it, why is there evil in the world?" -Epicurus


Fear is the mother of all gods.

Nature does all things spontaneously, by herself, without the meddling of the gods. -Lucretius
User avatar
EmperorMing
Sith Devotee
Posts: 3432
Joined: 2002-09-09 05:08am
Location: The Lizard Lounge

Post by EmperorMing »

Chardok wrote:In the same vein, what IYO, is the best anti-hack/antivirus software? Mcafee? norton? Combo of zonealarm and something else? thoughts?
Hardware out fornt all the way. And set your stuff up in depth.

Router/firewall, internal firewall and such. Lock down the unessecary services. And don't share the drive the OS is on.
Image

DILLIGAF: Does It Look Like I Give A Fuck

Kill your God!
User avatar
Slartibartfast
Emperor's Hand
Posts: 6730
Joined: 2002-09-10 05:35pm
Location: Where The Sea Meets The Sky
Contact:

Post by Slartibartfast »

Didn't you run a Windows Update? I think it's the .NET framework that made me see that horrendous Welcome screen until I disabled the extra user it installed...
Image
User avatar
EmperorMing
Sith Devotee
Posts: 3432
Joined: 2002-09-09 05:08am
Location: The Lizard Lounge

Post by EmperorMing »

Slartibartfast wrote:Didn't you run a Windows Update? I think it's the .NET framework that made me see that horrendous Welcome screen until I disabled the extra user it installed...
I don't use winbloze update...Or let it use me for that matter. :P

I would rather drop the patches in myself than let the installer do it.
Image

DILLIGAF: Does It Look Like I Give A Fuck

Kill your God!
User avatar
Einhander Sn0m4n
Insane Railgunner
Posts: 18630
Joined: 2002-10-01 05:51am
Location: Louisiana... or Dagobah. You know, where Yoda lives.

Post by Einhander Sn0m4n »

This is probly academic at this point, but what was the homepage set to? And can you get HijackThis and post a log?
Image Image
User avatar
phongn
Rebel Leader
Posts: 18487
Joined: 2002-07-03 11:11pm

Post by phongn »

What FTP server did you use?
User avatar
EmperorMing
Sith Devotee
Posts: 3432
Joined: 2002-09-09 05:08am
Location: The Lizard Lounge

Post by EmperorMing »

Einhander Sn0m4n wrote:This is probly academic at this point, but what was the homepage set to? And can you get HijackThis and post a log?
Some page I have never visited. And the drive has already been wiped and restored. :wink:
Image

DILLIGAF: Does It Look Like I Give A Fuck

Kill your God!
User avatar
EmperorMing
Sith Devotee
Posts: 3432
Joined: 2002-09-09 05:08am
Location: The Lizard Lounge

Post by EmperorMing »

phongn wrote:What FTP server did you use?
Bulletproof FTP. I'll reopen shop, just on a higher port... :wink:
Image

DILLIGAF: Does It Look Like I Give A Fuck

Kill your God!
Psycho Smiley
Keeper of the Lore
Posts: 833
Joined: 2002-09-08 01:27pm
Location: Soviet Canuckistan

Post by Psycho Smiley »

Slartibartfast wrote:Didn't you run a Windows Update? I think it's the .NET framework that made me see that horrendous Welcome screen until I disabled the extra user it installed...
Well, I'm glad you posted that, because I just ran an update and didn't know why my system was doing that! Damned Windows...
An Erisian Hymn:
Onward Christian Soldiers, / Onward Buddhist Priests.
Onward, Fruits of Islam, / Fight 'till you're deceased.
Fight your little battles, / Join in thickest fray;
For the Greater Glory / of Dis-cord-i-a!
Yah, yah, yah, / Yah-yah-yah-yah plfffffffft!
User avatar
TrailerParkJawa
Sith Acolyte
Posts: 5850
Joined: 2002-07-04 11:49pm
Location: San Jose, California

Post by TrailerParkJawa »

Chardok wrote:In the same vein, what IYO, is the best anti-hack/antivirus software? Mcafee? norton? Combo of zonealarm and something else? thoughts?
Dont forget to change the factory password for your router. Dont laugh, Ive come across DSL/Cable routers where folks just leave the password what is was out of the box. There are ways to figure out what brand of router you are talking too and then simply guessing the password.
MEMBER of the Anti-PETA Anti-Facist LEAGUE
User avatar
EmperorMing
Sith Devotee
Posts: 3432
Joined: 2002-09-09 05:08am
Location: The Lizard Lounge

Post by EmperorMing »

TrailerParkJawa wrote:
Chardok wrote:In the same vein, what IYO, is the best anti-hack/antivirus software? Mcafee? norton? Combo of zonealarm and something else? thoughts?
Dont forget to change the factory password for your router. Dont laugh, Ive come across DSL/Cable routers where folks just leave the password what is was out of the box. There are ways to figure out what brand of router you are talking too and then simply guessing the password.
There are too many peeps that still do that. Thank gawd I run a non-linky router and have the default settings changed. :wink:
Image

DILLIGAF: Does It Look Like I Give A Fuck

Kill your God!
User avatar
Xon
Sith Acolyte
Posts: 6206
Joined: 2002-07-16 06:12am
Location: Western Australia

Post by Xon »

TrailerParkJawa wrote:
Chardok wrote:In the same vein, what IYO, is the best anti-hack/antivirus software? Mcafee? norton? Combo of zonealarm and something else? thoughts?
Dont forget to change the factory password for your router. Dont laugh, Ive come across DSL/Cable routers where folks just leave the password what is was out of the box. There are ways to figure out what brand of router you are talking too and then simply guessing the password.
My router only accepts connections to the html adin panel from the lan. Not from the internet side.

What type of retard leaves a router remote admin panel accessable from the internet by default!
"Okay, I'll have the truth with a side order of clarity." ~ Dr. Daniel Jackson.
"Reality has a well-known liberal bias." ~ Stephen Colbert
"One Drive, One Partition, the One True Path" ~ ars technica forums - warrens - on hhd partitioning schemes.
Post Reply