G oog le BadWeB | Login/out | Topics | Search | Custodians | Register | Edit Profile


Buell Motorcycle Forum » Quick Board Archives » Archive 0210 (October 2002) » Virus, SPAM, hackers « Previous Next »

  Thread Last Poster Posts Pages Last Post
Archive through April 11, 2002Dust_Storm30 04-11-02  03:23 am
         

Author Message
Top of pagePrevious messageNext messageBottom of page Link to this message

Blake
Posted on Thursday, April 11, 2002 - 03:59 am:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Me neither.
Top of pagePrevious messageNext messageBottom of page Link to this message

Court
Posted on Thursday, April 11, 2002 - 05:26 am:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

I spent a frustrating evening trying to get my LinkSys wireless to work in my ill configure IBM ThinkPad. Works fine in all the other machines. Off to see the techie today, I HAVE to learn more about this stuff.

So you guys are saying that the LinkSys wireless, with a 24/7 cable eliminates the need for any other firewall?
Top of pagePrevious messageNext messageBottom of page Link to this message

Bluzm2
Posted on Thursday, April 11, 2002 - 10:40 am:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Court,
With my wireless and wired PC's at home I still run Zone Alarm (the free version).
The LinkSys will keep most of the script kiddies out but a determined hack can get through. Usually with a trojan of some sort.

If you are running wireless, make sure you have the WEP encryption enabled. Use the 128 bit key.
If you use the wireless card else where, you may have to drop to a smaller key as most vendors use a propritary 128 bit encryption. For instance, I use an Orinoco Gold on my work laptop with 128 bit key at work but at home using the same card I have to drop to 40 bit. Using a Linksys card at home I run 128 bit, it won't work at all here at work (128 bit key only)

What problems are you having with your Stink oops Think pad? Some of the earlier models had some weird stuff with their PCMCIA sockets, some cards just would not work no matter what you did.

Brad
Top of pagePrevious messageNext messageBottom of page Link to this message

Bluzm2
Posted on Thursday, April 11, 2002 - 10:45 am:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Chris,
I'm up in Minneapolis. I work for the Wheaties/Cheerios folks.
We have quite a few folks on SW Bell. Most are residential type accounts.
By the end of June, we will have 400-600 sales folks on DSL/cable using VPN.
BTW, guess who does the VPN stuff around here!

Brad
Top of pagePrevious messageNext messageBottom of page Link to this message

Bluzm2
Posted on Thursday, April 11, 2002 - 10:53 am:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Dave,
The Westell is a DSL modem. If memory serves it can be configured as a router also.
Yes, it's all very confusing. That's one of the reason's cable is kicking DSL's keester in the market place.
Much simpler to set up and maintain. Although they both have their own set of good points and warts.
YMMV depending on your ISP and their commitment to customer service.

Even if you don't have to "fire up" the DSL connection each time you start your PC, it could still be a PPPOE connection. The PPPOE sign on may be done by the modem. The user id and password are stored in the modem instead of an application on your PC.
If you are interested, I can help you figure it out which flavor you have. It may help with the router decision.

Brad
Man, did I open a can of worms here!
Top of pagePrevious messageNext messageBottom of page Link to this message

Dust_Storm
Posted on Thursday, April 11, 2002 - 02:36 pm:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Brad: Good info on those Orinico cards, I use the gold set as well when I'm in the office, for home use I have the standard silver cards, they work well enough. Interesting thoughts though, for those of you with a mobile antenna rig for your Orinoco cards, take a drive downtown with your laptop on and see how many company's networks you can login to. I was reading an article about the Avaya cards and and didn't believe it until I tried it, scary stuff! Avaya is also in the works for releasing the Platinum card soon enough from what I've heard ( 256bit Ency), but at the price of a gold card collection and the recievers, I can't imagine the cost on those.

Also keep in mind the area that you live in. I live in Northern Mexic- I mean Western Texas, where the average conection for buisness class is 128K ISDN, and they still manage to pipe through their AS-400 data and a voice channel to TelMex's fractional E-1 lines for the plants in Juarez.

DSL and cable are truely highspeed in this area, but in other areas we might be considered slow..

I think using a firewall on a dynamic ip is bordering on paraniod (as Aaron piped up so much earlier), as a determined hacker would obviously rather spend his time with company networks where the U/D speeds average more than 80Kbs per connection, than a cable which has a U/D speed of 10kbs in the real world. For those of you in the warez community, pub'ers usually hit known addresses of major installations (EG, colleges, the 208(mostly Europe),209(some Europe/US),198(Corp US),14,64,and 12 blocks (keeping in mind that 12,14,and 64 are restricted blocks for government/military) Everynow and then they may stumble on someone's home FTP, but the speeds will shy them away from it.

What happened Blake? You look decidedly unhealty from one of my above comments(ack, I live in TX, Blake lives in TX, I have no doubt my little Blast is going to have issues against his M2..)

my dollar fifty with change...

[Ds]
Top of pagePrevious messageNext messageBottom of page Link to this message

Bluzm2
Posted on Thursday, April 11, 2002 - 04:30 pm:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Chris,
Many trojan attacks of the DDOS variety are launched from home DSL/cable installs as well as larger corporate pipes.
The hacks are looking for quantity of attackers and bandwidth. They make up for bandwidth available to the hacked machines by infecting hundreds of machines.

Check out the Gibson page I refered to above for an example. He got hit again in January by a large scale DDOS attack. Another good read if you are the geek type.
Blacksix has a good link at the top of this thread.

Brad
Top of pagePrevious messageNext messageBottom of page Link to this message

Blake
Posted on Thursday, April 11, 2002 - 06:05 pm:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Chris, your profile info is all hidden. Where do you reside?

The sad face was echoing Dave's statement two posts above. Someone snuck a new post in between.
Top of pagePrevious messageNext messageBottom of page Link to this message

Dust_Storm
Posted on Friday, April 12, 2002 - 01:50 am:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Blake, durnit, I'll have to unhide it then! I'm stuck in the mighty dustbowl of El Paso TX (probably not too far from Buellidan, I haven't quite got him pinned down yet, but it's a small town for as large as it is..). Was driving through some neighborhoods last night, and someone had a 5th wheel trailer with 4(!) Whitelightnings on it parked out front of their house. Man, I wish I could have one of the originals, they look awesome. But I regress...

Brad: It's really interesting your mention of the DDOS attacks, in this area the only large scale problems we've been having have been the email worms. I am aware of DDOS attacks and the newer DDOS on multi server attacks (like the ones that recked havoc on AOL servers in the last year) but thankfully we've been obvilious to them here. I really don't know what would happen if something like that showed up here.. everyone would more than like take a 'siesta, and call for help. Industry here is vsatly different than that of the Twin City's, you guys are light-years ahead of us on the tech front. One of those blessings in disguse things, are hardware is too old to be effected by the newer attacks..

And I refuse to be called a geek by anyone other than my GF, sooooooooooo...... just call me (__fill in the name of a technically adept person here__) instead..

Off to disassemble the Blast again!

[Ds] (vanishesinaflurryofwrenches)
Top of pagePrevious messageNext messageBottom of page Link to this message

Anonymous
Posted on Wednesday, July 24, 2002 - 04:44 pm:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Anyone have any ideas for ways to "thank" these people for their SPAM-o-grams? The email address they were sent from disabled within hours of sending out "millions" of spam-o-grams.
Why are they never close to my neighborhood?

REPORT #1 "The Insider's Guide to Advertising for Free on the Net"
Order Report #1 from

M. Linville
P.O. Box 580654
Elk Grove, CA 95758-0011
USA
_________________________________________________________
REPORT #2 "The Insider's Guide to Sending Bulk e-mail on the Net."
Order Report #2 from

Witold Stawarz
1455 Tallevast Road
Suite L8369
Sarasota, FL 34243
USA
_________________________________________________________
REPORT #3 "Secret to Multilevel Marketing on the Net"
Order Report #3 from

T.S.
Kolonia Browar 55
34-300 Zywiec
Poland
_________________________________________________________
REPORT #4 "How to become a Millionaire Utilizing MLM and the Net."
Order Report #4 from

Jack Isabella
701 50th Street
Sacramento, CA 95819
USA
___________________________________________________________
REPORT # 5 "How to Send Out One Million e-mails for FREE"
Order Report #5 from

Mike Connell
32 Bangor Street
Port Dinorwic
Gwynedd
LL56 4JD
United Kingdom
Top of pagePrevious messageNext messageBottom of page Link to this message

Anonymous
Posted on Thursday, July 25, 2002 - 09:29 am:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

The fact that they are using postal mail (presumably) for payment for the "report" probably runs them afoul of USPS mail fraud, you can forward a complaint to the postmaster general (or whatever they are called).

Will probably only get them a nasty-gram, but will at least give them a tap up side the head with the clue stick.
Top of pagePrevious messageNext messageBottom of page Link to this message

Anonymous
Posted on Thursday, July 25, 2002 - 09:50 am:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

Actually what I've done in the past when I have some unused stamps available and am feeling particularly ornery, is to print out the offending email, then send one copy to the postmaster of each US zip code in the list, then one copy to the IRS as well. Of course the spam mail says it's all "legal", and some of the resenders are just dumb dupes, but still it sucks. But sometimes a personal knock on someone's physical door to say very politely "don't do that nomore" is so much more effective. Sort of makes the internet not so anonymous anymore.
Top of pagePrevious messageNext messageBottom of page Link to this message

Blake
Posted on Saturday, October 26, 2002 - 12:59 pm:   Edit Post Delete Post View Post/Check IP Print Post    Move Post (Custodian/Admin Only)

All,

I'm asking for your help.


Every day for the past month or so I have received multiple emails laden with malevolent viral klez worm payloads. The modus operandi of this worm and its variants (the klez viruses) is to secretly send email bearing a hidden payload of itself to all entries in your MS Outlook address book.

Why not just contact the sender of the virus laden email? Unfortunately, I cannot know who that might be. The klez worm sneakily disguises the infected computer user's/owner's identity by substituting their "from" email address/name with another email address/name randomly chosen from their address book or possibly other email. The subject of each email is also taken from other email documents found in the infected computer's files.

The only way to put an end to the infection is for the owner/user of the infected computer to run a complete virus scan using an up to date data file... or... to recognize the following email addresses and/or subjects as being among those on his computer, in his Outlook files and manually clean his system of the infection.

So if you recognize ANY of the following email names or email subject titles, PLEASE immediately run a full up to date virus scan on your hard drive and clean out any viral infections.

"From" Email Addresses
additude_1999@yahoo.com
buelnuts@home.com
candyandchrome@hotmail.com
HGH@mail103.specialm
JackandRanee@aol.com
jmellon@progressivelending.com
jpedersen@progressivelending.com
kcrewdson@progressivelending.com
michellem@capitol-commerce.com
mjackson@progressivelending.com
mtrbkmike@attbi.com
sbird1@bellsouth.net
shellbell@verizonmail.com
wiebe@albatros.cnb.net


Email Subject Titles
A funny game
A new game
A Response
Congratulations
Eddie Bauer, Inc. All Rights R..
Empty html file
Enigma Information Retrieval S..
Happy Allhallowmas
Happy good Allhallowmas
Have a humour Allhallowmas
Honey
Spice girls' vocal concert
Undeliverable mail--"empty htm..
Worm Klez.E immunity


If ANY of the above match entries in your address book or match items found in your inbox or outbox, please immediately perform a virus scan using up to date data files. And regardless, please remove my email address from your address book. My email address is blake@badweatherbikers.com .

More info on the klez virus, how to detect it, and how to remove it can be found at the following trusted and reputable sites...

http://www.symantec.com/avcenter/venc/data/w32.klez.h@mm.html

http://www3.ca.com/solutions/collateral.asp?CT=65&ID=1705

http://www.f-secure.com/v-descs/klez_h.shtml

That last link shows how the latest variant of klez, one of which was sent to me, might fool an ignorant victim into infecting his/her own computer.

No, my computer was not infected. I screen and scan all email via netmail prior to download. Aything with an attachment form an unrecognized source gets trashed. I've been trashing these for over a month now. It is just getting old waiting for whover is infected to get on the ball and disinfect their computer. The subject emails never made it to my hard drive. Even if they did, anti virus software (Norton) would catch it and protect my computer.

Anyone out there who is using email and surfing the web while not running an up to date anti virus program is begging for their computer to be infected. Please, if you are not running a current anti-virus application, please get one and do so immediately. You can download them from McKaffee or Symantec for a very reasonable fee.

Thanks for your help.
« Previous Next »

Add Your Message Here
Post:
Bold text Italics Underline Create a hyperlink Insert a clipart image

Username: Posting Information:
This is a private posting area. Only registered users and custodians may post messages here.
Password:
Options: Post as "Anonymous" (Valid reason required. Abusers will be exposed. If unsure, ask.)
Enable HTML code in message
Automatically activate URLs in message
Action:

Topics | Last Day | Tree View | Search | User List | Help/Instructions | Rules | Program Credits Administration