1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Am I being HACKED?

Discussion in 'Black Hat SEO' started by lotus, Jul 1, 2008.

  1. lotus

    lotus Junior Member

    Joined:
    Jan 27, 2008
    Messages:
    108
    Likes Received:
    25
    Hi All,

    I have had a funny feeling for a couple of weeks, ever since Google completely de-indexed one of my sites, that I was being hacked.

    Call me paranoid but 30 minutes ago I was in FileZilla attempting to change attributes on some of my server files when low and behold the thing freezes. It gave about 5 of those annoying beeps and wouldn't open the folders I needed.

    So I just sat there waiting patiently when wouldn't you know it the cursor starts moving from folder to folder on its own :eek:. Not just any folder either - very systematic and fast. Moving within the same website that I was in, but totally different folders - this is a huge site.

    Anyone offer any ideas on what I should do now? I contacted the web host - suspect they will claim it is my end. I have a wireless connection but I am in small town surburbia here. (can't see that being the prob, have a wep code anyway)

    Thanks
    Lotus
     
  2. NickE83

    NickE83 Junior Member

    Joined:
    Jun 13, 2008
    Messages:
    194
    Likes Received:
    665
    Occupation:
    Killing, (metaphorically)
    Location:
    UK
    sounds like aliens again,

    damn those pesky aliens!

    Na man i'm really not sure about that

    sounds pretty freaky though.
     
  3. Essential Clix

    Essential Clix Executive VIP Premium Member

    Joined:
    Jul 30, 2007
    Messages:
    1,755
    Likes Received:
    2,791
    Location:
    USA
    Get yourself a good firewall, as it sounds like you have a trojan or bot installed on your PC. Be sure to block any suspicious connection attempts. If you aren't sure of the process asking for permission to access the web, do a search on the process/file name. Also, get a good antivirus and antispyware program as well.

    Here's my personal recommendations:

    Firewall: Look 'n' Stop or Zone Alarm (free)
    Antivirus: Kaspersky or Eset NOD32
    Antispyware: SUPERAntiSpyware, SpyBot, AdAware, and to be honest, the Yahoo! Spyware program that comes with the Yahoo! Toolbar (by Norton) isn't half bad either.
     
    • Thanks Thanks x 1
  4. Damien15

    Damien15 Junior Member

    Joined:
    Apr 1, 2008
    Messages:
    147
    Likes Received:
    163
    Occupation:
    Bishop of death
    Location:
    Beyond hell
    Probably a trojan (RAT-type)!
    Get some decent trojan-basher and some antivirus (i like kaspersky) and do a full system scan!
    Hope that helps :)
     
    • Thanks Thanks x 1
  5. lotus

    lotus Junior Member

    Joined:
    Jan 27, 2008
    Messages:
    108
    Likes Received:
    25
    Thanks heaps for the info. I used to have zone alarm until about a month ago when it just packed up and blocked my access to the internet completely. After researching I chose (I am ashamed to say) windows defender because several respectable forums were recommending it.

    I use Avast Anti Virus is this any good?

    Also do trojans behave so openly? It looked like someone was accessing my computer remotely. I thought trojans were invisible. (please excuse dumb statements I am new...)
     
  6. lotus

    lotus Junior Member

    Joined:
    Jan 27, 2008
    Messages:
    108
    Likes Received:
    25
    Thanks Carlok. Not sure what you mean by "what for a Script do you use"?

    I think the trojan started after I opened FileZilla, but it's funny cause there has been some sus activity on my web server for a while. Nothing substantial just traffic spikes at the same time every month on the site that was de-indexed.

    Okay so I have done the cmd, but I still can't tell what is my pid and what is foreign. There is a lot of ip addresses - one is remote access connection manager. Is this just for the wireless network?

    As to "DONĀ“T CLICK ON EVERY SHIT" I try to hold back....but it's like candy to a baby.