I am running malwarebytes and noticed that avira caught something and quarantined it yesterday... other than changing all my password for sites any other suggestions?We regret to inform you that we have found that your FTP password has been compromised. It is likely that it was stolen by a "hacker" (or someone with malicious intent against your account) or a Trojan. This means that your account is now vulnerable to malicious scripts. Your account will be completely cleaned from all known malicious code in the nearest time.
We have changed your FTP passwords to a temporary ones in order to protect your account. You may change them anytime at your hosting control panel. Important: Please do not use the old passwords, as this will only make your account vulnerable again. Please also note that some widespread Trojans have the ability to steal FTP passwords from a user`s local PC`s and send these passwords to hackers (or special bots which were made by hackers). To prevent re-occurrence, please understand that you will need to perform a full anti-viral scan on your local PC (using an in-depth scanner) prior to your next FTP login. We hope that these actions will protect your account from compromise in the future. Thank you for understanding in this matter, and we sincerely apologize for any inconvenience this may cause.
My FTP was hacked, what should I do next?
- SpaceBooger
- Moderator
- Posts: 4420
- Joined: Mon Mar 10, 2008 6:40 am
- Location: The AK-Rowdy
- Contact:
My FTP was hacked, what should I do next?
I use Phpbb (like this site) and Wordpress for most of my sites and just got the following as a trouble ticket from my hosting company:
Re: My FTP was hacked, what should I do next?
In the future, avoid FTP at all costs. Passwords are transmitted in plain text, so anyone on your network segment or in between you and your host can read your password easily.
It sounds like what happened here is that your home PC got rooted, and they sniffed the password from there. The only safe thing to do when your machine is compromised is to nuke it and reinstall from clean media. You cannot trust a scan on a compromised OS. Rootkits can and do hide themselves in filesystems and lie to the OS about it.
It sounds like what happened here is that your home PC got rooted, and they sniffed the password from there. The only safe thing to do when your machine is compromised is to nuke it and reinstall from clean media. You cannot trust a scan on a compromised OS. Rootkits can and do hide themselves in filesystems and lie to the OS about it.
We are prepared to live in the plain and die in the plain!
- SpaceBooger
- Moderator
- Posts: 4420
- Joined: Mon Mar 10, 2008 6:40 am
- Location: The AK-Rowdy
- Contact:
Re: My FTP was hacked, what should I do next?
Yeah, but I haven't used my FTP (or logged in) in over a month? Do you think all of my passwords are compromised?Hatta wrote:In the future, avoid FTP at all costs. Passwords are transmitted in plain text, so anyone on your network segment or in between you and your host can read your password easily.
It sounds like what happened here is that your home PC got rooted, and they sniffed the password from there. The only safe thing to do when your machine is compromised is to nuke it and reinstall from clean media. You cannot trust a scan on a compromised OS. Rootkits can and do hide themselves in filesystems and lie to the OS about it.
Re: My FTP was hacked, what should I do next?
Probably. I wouldn't risk it.
We are prepared to live in the plain and die in the plain!
Re: My FTP was hacked, what should I do next?
I remember my A+ teacher was going on about how much trouble he use to have with his FTP. He said it wasn't worth using. Seems like people will hack it just for the hell of it. Just because they can.Hatta wrote:In the future, avoid FTP at all costs.
- SpaceBooger
- Moderator
- Posts: 4420
- Joined: Mon Mar 10, 2008 6:40 am
- Location: The AK-Rowdy
- Contact:
Re: My FTP was hacked, what should I do next?
From what I understand, there were multiple FTP logins from multiple countries in a short period of time. Thats how they figured out the password was compromised.
So I now have a fresh install of windows 7.
So I now have a fresh install of windows 7.
Re: My FTP was hacked, what should I do next?
So whats the alternative to FTP?
Got: Atari 2600, Atari 7800Pro, Commodore 64, Odyssey 2, Sega Master System, NES, Genesis Models 1-3, Nomad, Game Gear, Sega CD Model 1, Sega 32x, SuperNES, GameBoys, GameBoy Pocket, GBC, Sega Saturn Model 2, GBA, Nintendo 64, Playstation, Sega Dreamcast, Playstation 2 Slim, Nintendo DS Lite, Xbox 360, Gamecube, PS3 Slim
Re: My FTP was hacked, what should I do next?
i thought ftp was the only way to send files over the internet?
to a host server I mean
to a host server I mean
Re: My FTP was hacked, what should I do next?
FTPS (over SSL) Everything is encoded. Many hosts however do not support this...
Re: My FTP was hacked, what should I do next?
and you can do this ftps using ur regular ftp program?
like cute ftp?
like cute ftp?