• Tired of adverts on RWI? - Subscribe by clicking HERE and PMing Trailboss for instructions and they will magically go away!

I just got a call from a hacker!!

dawg

I'm Pretty Popular
1/1/07
1,905
0
0
I have had a Linux server here at my house for a couple of years now running a personal site i had. Someow hackers gained access to my server and i dont know what they did. I have pulled the server offline and have parked the domain. The hacker got my cell number off the whois directory! I am scared to look in the server to see what they did! I havnt been to my site in weeks! I am scared now i dont know what to do. I have already closed all the ports on my router changed my ip and took that server offline. I am going to look in the home directory to see what they did. Man I am sweating.
 

Sylar

Banned member, the goat does not approve
Banned
17/1/07
2,549
0
0
do share what they did but worst case they just used your server for IP attacks or other illegal things. I would report this to the local law enforcement in case anything traces back to your IP. Specially since you did not know how long they were on it.
 

andreww

I'm Pretty Popular
17/3/06
2,249
16
38
Man... do you have any enemies that know a lot about computers?
 
D

d4m.test

Guest
don't need enemies.. could be a 12 yr old kid bored outa his mind that found an open box.. :/
 

dawg

I'm Pretty Popular
1/1/07
1,905
0
0
I found what they did. They set up a Wells Fargo page to make it look like the bank site and masked my ip with a domain name and was using that page as a phishing site to try and steal peoples bank account numbers. I have changed the ip and fixing to wipe that server out with dban. I have also closed all ports on my router. what should i do next?
 
D

d4m.test

Guest
1. passwords.. thats the number one cause to having an insecure server.. longer the better, upper/lower case, numbers, symbols.. all help..

2. keep up-to-date with packages/services/daemons/kernel

3. grsecurity patch for your kernel.. a must have..

4. firewall, even one on the linux server. apf is a decent firewall script that I've used.. pretty self explanatory..

5. don't have anything running on the server that you dont need.. if your not using mail, no need for it to be running, just one more thing that may be exploitable
 

Vric

Renowned Member
17/6/06
859
215
43
he probably haven't done anything to you server.. Calling for telling you that he have hacked your site ? why would he do that :p

He called you, you pulled you server offline, he won... If he wanted to turn off your website, he would have done it itself :p
 

Novesh

I'm Pretty Popular
5/5/06
2,291
0
0
need some help?

I'm certified in ownage of hackers due to my 1337 skillz hahaha
 

dawg

I'm Pretty Popular
1/1/07
1,905
0
0
tnik said:
1. passwords.. thats the number one cause to having an insecure server.. longer the better, upper/lower case, numbers, symbols.. all help..

2. keep up-to-date with packages/services/daemons/kernel

3. grsecurity patch for your kernel.. a must have..

4. firewall, even one on the linux server. apf is a decent firewall script that I've used.. pretty self explanatory..

5. don't have anything running on the server that you dont need.. if your not using mail, no need for it to be running, just one more thing that may be exploitable

Thanks tnick. i have made all the changes you suggested. My router is now closed off and that server is being wiped out now and is offline for now.

It is just a shame that these scumbags are out there doing this crap. It just sux.
 

dawg

I'm Pretty Popular
1/1/07
1,905
0
0
Vric said:
he probably haven't done anything to you server.. Calling for telling you that he have hacked your site ? why would he do that :p

He called you, you pulled you server offline, he won... If he wanted to turn off your website, he would have done it itself :p


Yes, he saw some hackers talking about it wherever they hang out and he called me. I really appreciate that guy because no telling how long it would have ran until i found out. Like i say i forget about that server and never check it.
 
D

d4m.test

Guest
haha thats an oxymoron right? windows server? ;)
 

MICAVI

Active Member
22/3/07
320
0
0
I hear about hackers quite frequently, but I don't understand what they are doing. How do they hack into something like your own personal website?
 
D

d4m.test

Guest
same way they hack into your personal computer at home.. they find something that is exploitable, or something that is wide open and have their way with it.
 

dawg

I'm Pretty Popular
1/1/07
1,905
0
0
tnik said:
same way they hack into your personal computer at home.. they find something that is exploitable, or something that is wide open and have their way with it.

Very true!! And you always say it cannot happen to you then it does. I found that out the hard way :evil:
 

MICAVI

Active Member
22/3/07
320
0
0
But what is exploitable? I mean we don' need a hacker tutorial or anything, but what do they have to do to get into your system?