need help with illegal IRC service on my servier

Discussion in 'Site & Server Administration' started by tyankee, Dec 4, 2008.

  1. #1
    just got a message from the server people about 'illegal IRC service' on my server and i have no idea how to fin dit or fix it.. can someone help?
     
    tyankee, Dec 4, 2008 IP
  2. zeromaster

    zeromaster Peon

    Messages:
    38
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    0
    #2
    Is it windows or linux server is it dedicated or a vps
    Your server most likely has been compromised
    Most likely its gonna be more costly to have someone clean it up.
    If theres not a lot on the server that cant be replaced very quickly id have them do a reinstall if its dedicated
     
    zeromaster, Dec 4, 2008 IP
  3. Mxhub

    Mxhub Active Member

    Messages:
    474
    Likes Received:
    1
    Best Answers:
    0
    Trophy Points:
    55
    #3
    Login to the server and kill all IRC-related service.
    probably eggdrop too!
     
    Mxhub, Dec 13, 2008 IP
  4. SSANZ

    SSANZ Peon

    Messages:
    861
    Likes Received:
    10
    Best Answers:
    0
    Trophy Points:
    0
    #4
    That won't do anything, the attacker will just bring the services back up.

    You need a server administrator to clean the box/server and ensure further IRC services cannot be started/run.

    Good luck :)
     
    SSANZ, Dec 14, 2008 IP
  5. hans

    hans Well-Known Member

    Messages:
    2,923
    Likes Received:
    126
    Best Answers:
    1
    Trophy Points:
    173
    #5
    1.
    above all that is your sole responsibility !
    of course you remove all application and if necessary UNTIL last point below successfully completed you may chmod 000 all folders that contained malicious files
    ALL legal liability is yours - NOT at all your hosts. as only your site and superficial site security can cause hackers to enter.

    2.
    you have to secure your site / all applications

    3.
    to do so YOU have to study all log files until you find date, time and backdoor where hackers entered your site to setup your IRC services

    4.
    if above found - then secure that application and restart normal operations

    5.
    be ready to invest up to several weeks / many hundreds of hours to study / investigate and solve above
    all that work is your basic learning duty you should have done BEFORE starting your site. take your time, LEARN all details of all your applications in use on your site
     
    hans, Dec 17, 2008 IP
  6. Bohra

    Bohra Prominent Member

    Messages:
    12,573
    Likes Received:
    537
    Best Answers:
    0
    Trophy Points:
    310
    #6
    All you could do for time bieng is kill irc services
     
    Bohra, Dec 17, 2008 IP
  7. hostsvault

    hostsvault Guest

    Messages:
    143
    Likes Received:
    4
    Best Answers:
    0
    Trophy Points:
    0
    #7
    you better hire a good admin to get it secured.
     
    hostsvault, Dec 17, 2008 IP
  8. hans

    hans Well-Known Member

    Messages:
    2,923
    Likes Received:
    126
    Best Answers:
    1
    Trophy Points:
    173
    #8
    hundreds of hours of work = many thousands of dollars or more
    and
    site owner would remain stupid a life long
    and thus depend a life long on OTHERS and never learn to install / run a site responsibly and securely

    hire OTHERS to do own job is BAD solution - outsourcing important duties keeps society weak and irresponsible.

    just take the time - weeks or months to learn all
    years ago I had EXACTLY same situation and i did exactly what i recommend
    it took me weeks of day and night working hours
    and I spent thousand++ hrs since to learn and improve site security since that happened
     
    hans, Dec 17, 2008 IP
  9. RectangleMan

    RectangleMan Notable Member

    Messages:
    2,825
    Likes Received:
    132
    Best Answers:
    0
    Trophy Points:
    210
    #9
    Being a bit naive aren't you hans? Not everyone has time to be a sysadmin nor should everyone be forced into the role. Hiring a good company to manage your server is usually less than $100 a month. You can even pay people one-time fee to secure the server for about $50-$250. It's also sometimes easier just to get a managed server so you don't have to worry about the server.

    Do you learn how to perform surgery just because you have a cold?

    Everyone depends on someone else at some point.

    Outsourcing important duties creates JOBS and strengthens a society. Responsibility doesn't come to you because you can do everything for yourself. It comes when you manage to deal with in some way the problems of life. Dealing with the situation responsibly might include hiring someone capable to do the work.

    I think you mean years. And no one is ever fully secure. You should know that.

    Good for you but just because someone doesn't follow your path doesn't make the stupid or irresponsible.

    Your comments overall are immature.
     
    RectangleMan, Dec 18, 2008 IP
  10. hans

    hans Well-Known Member

    Messages:
    2,923
    Likes Received:
    126
    Best Answers:
    1
    Trophy Points:
    173
    #10
    outsourcing leads to soap bubble industries running out of control - sooner or later

    learning to do all results in much smaller projects and is the result of being willing to accept full responsibility

    learning to do all requires progress in small within own potential but results in projects understood by owner

    to stay within own potential usually results in problems that can be solved by self or controlled by self and thus contributes to increased global security in www and thus also to less cybercrime

    much / most of the current cybercrime scenery is the result of too many site owners exceeding their limits and failing to control their sites

    the current global economy crisis IMO is the direct result of too many industries outsourcing too much and loosing control and oversight of their businesses

    if you depend in an expanding business on opinion/advice and help from others - one day you find yourself in situation of corrupt system just as these days and weeks some government officials experience.

    re my "just take the time - weeks or months to learn all " that referred to actual learning time NOT the period of time that learning takes place. one month = 500 working hrs or more.

    learning takes place as you grow - step by step
    every new site expansion or site feature requires prior study and practicing before implementing new feature.

    we apparently are living different principles and rules of life and work. each makes his own choices and deals with the results of his own choices.

    looking at some large governments and industries - it is absolutely apparent that many mega-company CEOs and politicians made totally wrong choices in past years and decades. with wise choices in past there would be no industrial collapse and no need for bailouts.

    We have permission to learn from others - from such global crisis as well and convert the essence of learning into our own small scale family business or one person business venture. the rules always remain the same for large or smallest busienss ventures.

    Merry Christmas
     
    hans, Dec 18, 2008 IP
  11. SSANZ

    SSANZ Peon

    Messages:
    861
    Likes Received:
    10
    Best Answers:
    0
    Trophy Points:
    0
    #11

    You obviously have a problem with companies using other companies overseas to get things DONE.

    Outsourcing doesn't take down societies, it creates work for people outside of your own country.

    In conclusion, the thread starter has asked about illegal IRC services.... There has been a heap of people who have replied with exactly the same replies as other people, and people have posted absolute rubbish to gain a bigger post count. However, you have gone off your rocker because you dont like people outsourcing, i say calm down and provide this thread starter some REAL FACTS and some REAL sources on server administration instead of ranting off about how outsourcing is so evil.
     
    SSANZ, Dec 20, 2008 IP