PDA

View Full Version : hack threat. what do i do ??


locos
11-24-03, 11:02 PM
tonight i received a hack threat from an individual on aol instant messanger. this individual was banned from my forums some time ago and is now looking for revenge. i would like you to please read this threat and tell me how i should handle this.

------------------------------------------------
Start of hackinglover buffer: Mon Nov 24 21:15:32 2003
hackinglover: hi
david26zz: hey
hackinglover: is this ur site www.low-riders.com
david26zz: sure is
hackinglover: did u create the site
david26zz: absolutly :)
hackinglover: well i will be looking for security holes
hackinglover: is SQL INJECTION allowed
hackinglover: um is javascript disable in the forums
david26zz: do i know you ?
hackinglover: sure do
david26zz: ???
david26zz: who are you ?
hackinglover: juicedkid has been away from ur site learning how to hac well here i am back trying to hackstuff, no way in tracing me i have a spoofed ip address, and guess what if i want to i can hack ur site now
hackinglover: i can uploaded a trojan in FTP ur site and bam
hackinglover: site down haha
hackinglover: have fun
hackinglover: i will get revenge
hackinglover: but now i'm still learning
hackinglover: heres the site that taugh me stuff
hackinglover: www.hackthissite.org
hackinglover: and www.astalavista.com
hackinglover: see ya
david26zz: what is your problem ??
*** Error while sending IM: This user is currently not logged on
*** hackinglover signed on at Mon Nov 24 21:05:50 2003.
david26zz: ?
david26zz: what is your problem ?
hackinglover: what do you mean
hackinglover: Bigdan ip address is
david26zz: why are you threatening to hack me ?
hackinglover: 65.192.196.14
hackinglover: i tried port scanning him to see wat ports are open
hackinglover: but it look like he has a very good firewall
hackinglover: hahah u and layitlow use md5 encryption for password
david26zz: whats your deal ?
hackinglover: i bee studying ur site and layitlow
david26zz: why ?
hackinglover: if i really wanted to hack ur site i can, all i do is upload a trojan doing FTP open www.layitlow.com
hackinglover: in dos
david26zz: ok, let me put it to you like this. im not taking this as a joke. im going to report this to my host and the police. im saving this conversation
david26zz: if my site gets hacked, there will be problems
hackinglover: chill out dude i was playing
david26zz: play all you want, threatening to hack my site is no joke to me
hackinglover: i don't know anything i'm kidding
david26zz: ok man
hackinglover: chill out man let me back on LIL
hackinglover: i mean lowriders
david26zz: im just telling you, if you hack my site, i will report you to my host and the police
david26zz: and thats no joke !
hackinglover: dude to tell u the truth why would i hack ur site
hackinglover: nothing is valuable
hackinglover: is their
hackinglover: ??//
hackinglover: no alright then
david26zz: dont try me bro. thats all im saying
hackinglover: i won't man
hackinglover: why won't u let me post on ur site
david26zz: because of **** like this !
david26zz: X-(
hackinglover: dude i ain't gonna do ****
hackinglover: u have my word
david26zz: well, im saving this conversation just in case !
hackinglover: ok
hackinglover: i have to get going for bed time
david26zz: if anything happens to my site your in deep **** !
hackinglover: see u, behave loco
hackinglover: lata
*** hackinglover signed off at Mon Nov 24 21:15:07 2003.
End of hackinglover buffer: Mon Nov 24 21:15:32 2003
__________________________________________________ ____

i know this was a long post, but i dont exactly know what to do here........

thanks !

tbonekkt
11-24-03, 11:05 PM
Besides making sure you have the most recent release of the cms (I assuming you're using one), I'd change all passwords and remove all unnecessary FTP accounts.

Hopefully that user is as dumb as they appear to be, since PowWeb uses FreeBSD (Unix) standard trojans really have no effect.

locos
11-25-03, 12:03 AM
do you think i should notify the admins just in case ?

tbonekkt
11-25-03, 12:04 AM
You could, but I don't know what they could do. But if it makes you feel better, go ahead. :)

tinman
11-25-03, 03:27 AM
LOL I wouldn't give it a second thought. If he learned his hacking from HTS and astalavista he doesn't know enough to get past the password on your ftp. Not to mention he doesn't seem to know what a trojan is or does. He sounds like a 12yr old to me up past his bed time. :p

Croc Hunter
11-25-03, 04:33 AM
He can port scan powweb all he likes. He will not get in to hack your site. This is one reason powweb doesn't allow Telnet or shell access to their servers. Through your cms or insuffucient chmod bad php scripts etc is another story. You have enough to report him. Do it.

I'd Befriend him or hack him first. Spoofed IP's are still traceable ;)
pm me his original IP. If you need help.