Page 1 of 1
Script Kiddies
Posted: Thu Apr 25, 2002 12:53 pm
by Mr Sleep
The notorious Script Kiddies, does anyone know an easy way to detect whether one has been subject to their extra curricular activities?
Posted: Thu Apr 25, 2002 6:18 pm
by Quark
Under what context? During a computer game? Permanently (a trojan)? Other?
Posted: Thu Apr 25, 2002 7:27 pm
by Mr Flibble
Does Zonealarm pick that sort of thing up? It seems to be paranoid enough, so it might work.
The other solution is, of course, find them and shoot them.

Posted: Fri Apr 26, 2002 3:32 am
by Mr Sleep
Originally posted by Mr Flibble
The other solution is, of course, find them and shoot them.
I like it
@Quark Trojan i would have said, i could expand on the problem if it will help.
Posted: Fri Apr 26, 2002 6:47 am
by Ned Flanders
or are you referring to the script kiddies out there borrowing the tools for distributed denial of service attacks and creating their own army of zombie computers? that continues to be a problem.
Posted: Fri Apr 26, 2002 8:08 am
by Mr Sleep
DOS is really annoying, it crippled an internet company in the UK, and the people who did it were nothing but malicious pukes!
My problem is actually one of my customers, they get erraneous documents in their temp file, they also get documents copied in there as well...any advice on detection?
Posted: Fri Apr 26, 2002 1:53 pm
by Quark
http://antitrojan.silverhelix.com/
Info on trojans and that junk
I'd also run Anti-virus software and Ad-aware on that computer.
Of course, the temp directory is prone to all types of wierd files too...
Posted: Fri Apr 26, 2002 2:11 pm
by Mr Flibble
Originally posted by Mr Sleep
My problem is actually one of my customers, they get erraneous documents in their temp file, they also get documents copied in there as well...any advice on detection?
You sure it's not just windows leaving heaps of rubbish behind?
Posted: Sat Apr 27, 2002 2:59 am
by Xandax
I'm in a periode lately where I*m "attacked" by Backdoor/SubSeven at least 2 times a day.
Unfortunally the main point of origin (IP-range) is from Asia and some from eastern europe.
Kinda annoying - but good to know that it is an old trojan that all firewalls should pick up on.
I think these attacks are somehow connected to my playing DAoC lately - haven't had such an amount of trojan activity before starting DAoC

Posted: Sat Apr 27, 2002 2:34 pm
by Mr Sleep
Originally posted by Mr Flibble
You sure it's not just windows leaving heaps of rubbish behind?
I deleted temp and reinstated it, that seemed to sort the problem, i will have a look on Monday when i am back in the office, strange though.
@Quark, thanks for the link
