Mailinglist Archive: opensuse (4165 mails)

< Previous Next >
Re: [SLE] Help - Been Hacked!!
  • From: "Carlos E. R." <robin1.listas@xxxxxxxxxx>
  • Date: Fri, 25 Apr 2003 01:53:30 +0200 (CEST)
  • Message-id: <Pine.LNX.4.44.0304250144540.27046-100000@xxxxxxxxxxxxxxxx>

The 03.04.24 at 12:45, Matt Stamm wrote:

> I checked .bash_history as you suggested and found
> and interesting entry. This entry was in
> .bash_history in the 'root' directory.

As somebody else has told you, discontinue using that PC!

At least, if you want to investigate it, disconnect it from any network
whatsoever. If you want proofs, remove the HD, or dump the contents to a CD
or whatever using some external OS, like a rescue system on CD.

DON'T use that machine as it is!

Reformat, and reinstall everything. You can only reuse data files, after
inspection.

And do it now, please! :-|


> Peer-to-peer UDP Distributed Denial of Service
> (PUD) by contem

Ugh. :-(


> Does look good does it? Is anyone familiar with
> this?

It has been commented somewhere, that or a similar one. Apparently, your
machine is/was used to attack others, IMO.


--
Cheers,
Carlos Robinson


< Previous Next >
References