Follow us on Twitter!
Few are those who can see with their own eyes and hear with their own hearts. - Albert Einstein
Sunday, April 20, 2014
Navigation
Home
HellBoundHackers Main:
HellBoundHackers Find:
HellBoundHackers Information:
Learn
Communicate
Submit
Shop
Challenges
HellBoundHackers Exploit:
HellBoundHackers Programming:
HellBoundHackers Think:
HellBoundHackers Track:
HellBoundHackers Patch:
HellBoundHackers Other:
HellBoundHackers Need Help?
Other
Members Online
Total Online: 21
Guests Online: 20
Members Online: 1

Registered Members: 82843
Newest Member: hx47
Latest Articles
View Thread

HellBound Hackers | Computer General | Hacking in general

Author

Under attack.


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 09-03-10 08:56
Hey guys, im on my phone so limited text.

the last 20h i've been pinged and scaned by 216.240.157.88 (safarel.com)
since this started my cpu is at 100%

my firewall and antivirus have removed one threat after another. What should i do? any advice is appreciated!



Author

RE: Under attack.


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 09-03-10 09:17
http://security.thejoshmeister.com/

That site goes into it. Do a ctrl+ F to find where that domain is mentioned (safarel.com).

I looked that site up on the WOT site and here's the result, probable connections to malicious software:

http://www.mywot.com/en/scorecard/www.safarel.com

Just based on what you said, definitely don't think that it's something to brush off. Try to remove any malware from your system is about all that I can offer (which you've tried already).

Hopefully someone else can offer a bit more on this than I can. I'm a newcomer to this site but hopefully this points you in the right direction.
Author

RE: Under attack.

korg
Admin from hell



Posts: 2798
Location: ENDING YOUR ONLINE EXPERIENCE!
Joined: 01.01.06
Rank:
God
Posted on 09-03-10 10:16
You got jacked big time, It on a threat list already:
http://www.threat. . .8677593ff9

Best advise is to remove these files manually, If not try running malwarebytes it should get rid of it.


i57.photobucket.com/albums/g215/korg1269/shodan13.jpg

I deal in pain, All life I drain, I dominate, I seal your fate.
O R
Author

RE: Under attack.


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 09-03-10 14:22
I now have just slightly more info.
The exakt adress of what is attacking me is safarel.com/oms.php
I´ve found some of the malware but not all, any tip of a good malware remover? Thanks guys this is appreciated Smile


Author

RE: Under attack.


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 09-03-10 17:24
I'd recommend both AVG and TrendMicro's Housecall, as they are both free.

Depending on what you use that computer for, it may just be best to backup your files and re-install the OS. Malware is quite tricky and even if you remove everything you (or the AV scanners) find, you may still have an infection. The only way to be sure is to completely rebuild the box and then move your data back over (after giving it a virus scan or two, you don't want to rebuild the box and then copy the malware back over.)

If you use this computer for any sort on online banking or the like, definitely change those passwords.

~samurai


Author

RE: Under attack.


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 09-03-10 18:17
I Think that i´ve solved it for now. Installed norton 2010 instead of eset smart secutiry and it found a great deal of infected files.
Since the only thing i use that computer for is games and the likes i don´t think that is that big problem.

Thank you Smile


Author

RE: Under attack.


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 09-03-10 18:54
if I get someone scanning or trying to bruteforce my ftp or something (usually from china :/) I just restart my router so i get a new ip.


Author

RE: Under attack.

spyware
Member



Posts: 4192
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 09-03-10 19:04
wolfmankurd wrote:
if I get someone scanning or trying to bruteforce my ftp or something (usually from china :/) I just restart my router so i get a new ip.


wat

Just add them to the blacklist. Or better, reroute to fbi.gov.



img507.imageshack.us/img507/3580/spynewsig3il1.png
"The chowner of property." - Zeph
[small]
Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
[/s
http://bitsofspy.net
Author

RE: Under attack.


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 10-03-10 09:23
#wolfmankurd: I have a fixed ip Sad

#spyware: said and done Grin
all trafic from the specified ip will rerout through my vpn to fbi.gov Grin


Author

RE: Under attack.


Member

Your avatar

Posts:
Location:
Joined: 01.01.70
Rank:
Guest
Posted on 07-11-10 21:11
U re-routed all malicious traffic going into your i.p back out from ur i.p to Fbi.gov!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! hmm i wonder which i.p will show up in the logs yours or the attackers Shock
Author

RE: Under attack.

spyware
Member



Posts: 4192
Location: The Netherlands
Joined: 14.04.07
Rank:
God
Warn Level: 90
Posted on 07-11-10 21:11
:/



img507.imageshack.us/img507/3580/spynewsig3il1.png
"The chowner of property." - Zeph
[small]
Widespread intellectual and moral docility may be convenient for leaders in the short term,
but it is suicidal for nations in the long term.
- Carl Sagan
“Since the grid is inescapable, what were the earlier lasers about? Does the corridor have a sense of humor?” - Ebert
[/s
http://bitsofspy.net
Author

RE: Under attack.

ynori7
Member



Posts: 1486
Location: #valhalla
Joined: 08.10.07
Rank:
God
Posted on 07-11-10 21:12
yihoshi wrote:
U re-routed all malicious traffic going into your i.p back out from ur i.p to Fbi.gov!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! hmm i wonder which i.p will show up in the logs yours or the attackers Shock

I suspect those logs are long gone since this happened more than half a year ago.


halls-of-valhalla.org/images/affiliateLogo.png voodoorage.halls-of-valhalla.org/images/smallLogo.png
i537.photobucket.com/albums/ff338/ynori77/archenemysig1.jpg
ynori7 http://halls-of-valhalla.org
Author

RE: Under attack.

goluhaque
Member



Posts: 197
Location: India
Joined: 17.02.10
Rank:
Apprentice
Warn Level: 30
Posted on 08-11-10 02:40
ynori7 wrote:
yihoshi wrote:
U re-routed all malicious traffic going into your i.p back out from ur i.p to Fbi.gov!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! hmm i wonder which i.p will show up in the logs yours or the attackers Shock

I suspect those logs are long gone since this happened more than half a year ago.

Lawl.


That applause I receive from y'all on posting this post would have gotten me drunk on power if I hadn't already been high on life.
Author

RE: Under attack.

fashizzlepop
Member



Posts: 482
Location: Old folks home.
Joined: 08.04.08
Rank:
Moderate
Posted on 08-11-10 05:22
goluhaque wrote:
ynori7 wrote:
yihoshi wrote:
U re-routed all malicious traffic going into your i.p back out from ur i.p to Fbi.gov!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! hmm i wonder which i.p will show up in the logs yours or the attackers Shock

I suspect those logs are long gone since this happened more than half a year ago.

Lawl.

Laughing and wielding longsword?


"The definition of insanity is doing the same thing over and over again and expecting different results.”
~Albert Einstein~


csullivan.codeinspire.net/images/boomsig2.png
fashizzlepop@gmail.com http://csullivan.codeinspire.net/
Author

RE: Under attack.

korg
Admin from hell



Posts: 2798
Location: ENDING YOUR ONLINE EXPERIENCE!
Joined: 01.01.06
Rank:
God
Posted on 08-11-10 10:01
MoshBat wrote:
This was a dead topic, before it was bumped with some atrocious English. We don't particularly need a discussion on how badly a thread was bumped, or what "lawl" may or many not stand for, or mean.

Lock and let die.


Good idea.


i57.photobucket.com/albums/g215/korg1269/shodan13.jpg

I deal in pain, All life I drain, I dominate, I seal your fate.
O R