IIS Server Security - Re: I was hacked

This is Interesting: Free IT Magazines  
Home > Archive > IIS Server Security > July 2004 > Re: I was hacked





You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

Author Re: I was hacked
Karl Levinson [x y] mvp

2004-07-19, 5:56 pm

d0x <dan@no.spam> wrote in message news:<pan.2004.07.17.22.47.16.464381@no.spam>...
> "... a dynamic DHCP type IP also 99.99% [dead]end"
>
> this is not true. If you can trace back to a actual person IP, you can
> contact there ISP. Give the ISP the IP address, date and time that the
> offense occurred, and your time zone. The ISP can look through there log
> files to find out who was the last person to have the IP before the time
> you given.
> From that, they can find out the persons mac address, and "null route"
> them ie: assign them an ip address of 192.168.10.231, that will prevent
> them from getting any internet access. When that person calls the isp to
> inquire about there internet connection, they will be caught.


Have you ever actually done that? In my experience, most ISPs won't
give that information or talk to you unless you're a law enforcement
person with a subpoena from a court in a country that the ISP
recognizes, and there isn't any language barrier, and you've contacted
them soon enough for them to preserve whatever logs they may or may
not have. Even then, there is a fair chance that what you'll find
isn't a perpetrator, but a virus-infected computer with a hidden proxy
or botnet running on it, or something similar.
Sponsored Links






Free braindumps | Software forum | Database administration forum

Copyright 2003 - 2008 webservertalk.com