PDA

View Full Version : Need help on tracing on my compromise computer


bluedot
02-06-05, 12:59 AM
I am not much of a network or internet security for that matter. so I need all the help i can get. My computer has been compromise(from someone I know) but need solid proof. I believe keylogger and other form is involve. I need to know what proper tools is out there to help me trace & monitor the outgoing traffic. I try to run all the basic spysweep and other adware without any luck.

Smokeys
02-06-05, 11:31 AM
I would highly suggest formatting, you can back up any data but you can't trust the operating system anymore if you believe somebody has been actively attacking your computer (either remotly or physically).

Automated scans will not help you as they work on pre-set filters looking for common software. There are still many programs (especially keyloggers) which can easily randomized itself so that its nearly impossible to detect. So unless you are very well versed in how windows works and what programs can do to hide themselves you might as well format.

bluedot
02-06-05, 02:33 PM
Try that already..doesn't seem to help. I guess I need to look around and find some software to monitor outgoing traffic.

drenader
02-06-05, 03:48 PM
If you reformat then your system would be clean for the time being. So how that wouldn't help im not sure.

jajmon
02-06-05, 08:16 PM
Try that already..doesn't seem to help. I guess I need to look around and find some software to monitor outgoing traffic.


http://www.ethereal.com/

Crash893
02-06-05, 08:32 PM
a healthy kick to the testicals of the person usually gets them talking real quick

i would reformat i dont know how your accessing the net but if its cable dont be afraid to unplug or disable the network while your not useing it.

hacking is a matter of effort and time

if you limit the amount of time they have with you they have to increas there efforts and usually they will just move on to some one else unless its personal in witch case you should probably call your isp and tell them about the hacking see if you can ge them banned form there current isp

ps2cho
02-06-05, 08:57 PM
get a firewall and enable full firewall options, it will tell you if somebody is trying to access your computer + the IP
www.Zonelabs.com
get the free zonealarm
goodluck