Web Hosting Forum | Lunarpages


*
Welcome, Guest. Please login or register.
Did you miss your activation email?



Login with username, password and session length
May 24, 2012, 09:06:35 AM

Pages: [1]   Go Down
  Print  
Author Topic: Hacktrace program????????????  (Read 1220 times)
amazon_banshee
Newbie
*
Offline Offline

Posts: 2


« on: April 24, 2003, 11:21:15 PM »

Hello I am new here. I am just starting to learn about computers. I see everyone here seems to be into zome alrm. I myself have a firewall that not only blocks an attacker.but tracks them and traces them giving me their Ip addy and location on a map,along with their isp and contact information for reporting abuse to their ISP. I get 10 or so attempted hacks a day through a trojan horse. I have reported almost all of them and actually some of them(isp's a) are prosecuting. I know this doesnt always work as hackers can "piggyback" off another persons pc.
Recently I have heard about a program called hacktrace. I found a hacktrace 2.1 at a website but it did not offer the services I heard about. Is there a program out there that will give me more detailed info about my attmepted hackers? I want it all. This all stemmed from someone who hacked me and obtained personal info of mine right after I built this new computer as I didnt install my firewall immediately. It happened very fast and the person got money from me and the police are now involved. So you can see why I am such a fanatic about this.
Please if anyone has any info about a program that will give me more info including their email or name etc,it would be greatly appreciated!
And btw,hello all nice to meet you! I am enjoying this site!

Sincerely,
the amazon banshee
Logged
TWebMan
Quantum Encyclopedia Writer
*****
Offline Offline

Posts: 3112



WWW
« Reply #1 on: April 24, 2003, 11:27:28 PM »

Welcome!  Good to have you aboard.

It's not really possible to derive an email from an online presence.  A network, an IP, yes, as you already know.  You have about as good as I know of.  I use Zone Alarm and I have Visual Route, and that about does it for me.  I do wish you luck and I hope it never happens again!
Logged

"Computers cause people to make more mistakes than any other invention in history, with the possible exception of handguns and tequila."  - Unknown
"Liberty of any kind is seldom lost all at once." - D. Hume
Every day is an Ode to Joy
The planet will be fine... and so will your site
amazon_banshee
Newbie
*
Offline Offline

Posts: 2


« Reply #2 on: April 24, 2003, 11:32:12 PM »

thanks for the reply webman!When I purchased my morton internet security from Best Buy I described my recent situation as well for needing it. He pulled me aside and told me that a program called "hacktrace" would give me even more personal info about my hacker. He stated that I could download it from any shareware site like Kazaa.I myself hate kazaa and use limewire. I looked it up there.and of course.even though it said hacktrace,in the end what I got was porn (what a shocker).lolAs for deriving more info,I do have a site that i found where you can get info from just an IP addy,but it only works part of the time

thanks again Smile
Logged
stephan
Guest
« Reply #3 on: April 25, 2003, 01:15:52 AM »

There are a lot of programs out there that claim to be able to trace people and find out a lot of information.

Some of these are hoaxes, or even worse, viruses.

Downloading files off kazaa or limewire can be very risky.
Logged
newcomer81
Spaceship Navigator
*****
Offline Offline

Posts: 96



WWW
« Reply #4 on: April 25, 2003, 06:52:43 AM »

your obtaining the most critical of information.. the IP, you should be logging the activity that the remote computer is doing or trying to do, all of it.. you MUST have complete un-altered logs! if the remote isp is doing what they are supposed to and logging thier traffic it is very easy to catch someone. the remote isp should be able to tell authorities who had that ip at that specific time. the only other thing that may provide usefull is to start capturing packets when you know when a hack is happening. by captureing packets you can find out if someone is 'piggybacking' the best security to have is
1 stay current on updates for your OS
2 stay current on updates for virus scanners and other software
3 use your firewall to block EVERYTHING, then open up just the ports that you need.
Logged
paul2003
Pong! (the videogame) Master
*****
Offline Offline

Posts: 22


« Reply #5 on: May 04, 2003, 10:39:25 PM »

I am green on the security knowledge, recently I been hacked by hacker by sent a window message.
After installing zone alarm software, I found that there were a lot of zone alarm alert prompt out.
The message stated :
The firewall has blocked internet access to your computer (NetBIOS Name) from 210.210.121.72 {UDP Port 1026}


Is that means someone could view my computer information?

Where could i reported my PC hacked !!!
Hope someone give suggestion.....
Logged
Ed
Berserker Poster
*****
Offline Offline

Posts: 5208



WWW
« Reply #6 on: May 06, 2003, 10:00:52 PM »

That message you recieved doesn't mean you were hacked! When you get hacked.. you usually don't know. That is the whole point of a good hack job! That message means that someone tried to connect to your computer wether routinely for a good purpose or an actual individual with a purpose, and that it was forbidden.

If you are hacked, and you get the IP address like the one above.. 210.210.121.72, use a program, or your own method of doing some reverse type of lookup, and find out where that IP address is first connected to the net (some ISP usually). Then do your best to contact that ISP with all the info you have! But make sure your computer is hacked first before you complain. If you get just a message like the one in your message, it means that you were not hacked and that the firewall detected someone trying to find out more about your computer!

Hope that helps!

- Ed Smile
Logged

Scott
Newbie
*
Offline Offline

Posts: 5


« Reply #7 on: May 12, 2003, 10:44:36 PM »

Hi there.

Just thought I would add a little to this. Sometimes those IP’s may not be correct. For example, I use a program called “GhostSurf” that allows me to do things on the internet anonymously. I’m not a hacker, but if someone tried to get my IP address, they might get one from Canada or from where ever. When I am online using this program it throws out random IP’s somehow if someone tries to get it. I don’t like the idea that some sites put cookies on my computer or that some sites have pop-up or pop-under ads. And I just don’t like being tracked period. I just want to visit where I want to visit, and as far as I am concerned, that is no one’s business. But again, I am not a hacker so I feel like I have a right to my privacy. Hackers on the other hand might use something like this to do stuff and mask their locations and other information.

Just thought I would mention that.

Scott
Logged
Ed
Berserker Poster
*****
Offline Offline

Posts: 5208



WWW
« Reply #8 on: May 13, 2003, 07:38:29 AM »

its usually fairly easy to figure out if that address is incorrect. Some of them will allow you to still send packets back to the original  sender. Depends what you are using. Anonymizer just copys nd resends to you, masking works differently.

Unfortunately there is no 100% guarenteed way to figure out who or where the 'hacker' actually is. You usually can backtrace but they nest them selves between 10's of systems, and general by the time they backtrace far enough, they will have already switched ip's and masking Ip's or finished their dirty work.

- Ed
Logged

paul2003
Pong! (the videogame) Master
*****
Offline Offline

Posts: 22


« Reply #9 on: May 13, 2003, 09:06:29 AM »

During the connection, anti virus software detect an outgoing connection..
THen
listing

Application/program : Kernel32TD
port number used  : 8001
Action for this call : allow or deny

Why norton antivirus always prompt such message in between 5 minutes.
Different message name will be pop up

Application/program : MsdTcw
port number used  : 8001
Action for this call : allow or deny

Application/program : PCCClientTD
port number used  : 8001
Action for this call : allow or deny


Finally pop up this question mark name......

Application/program : Huh
port number used  : 8001
Action for this call : allow or deny

What does this means?
Anyone could give suggestion or information>>
Thanking in advance.
Logged
Ed
Berserker Poster
*****
Offline Offline

Posts: 5208



WWW
« Reply #10 on: May 13, 2003, 09:19:10 AM »

It looks like windows is calling home! Not 100% sure on that though.If in doubt, I would deny it! Are you trying to use Mp3 streaming by any chance?

- Ed
Logged

stephan
Guest
« Reply #11 on: May 13, 2003, 09:56:43 AM »

Sounds like a possible virus, you should get a virus checker straight away!
Logged
newcomer81
Spaceship Navigator
*****
Offline Offline

Posts: 96



WWW
« Reply #12 on: May 28, 2003, 12:03:46 PM »

i found this site when i was doing some reverse ip look up for our logs are work
maybe others can find it usefull if you have and IP from zone alarm or somthing similare. it gives you the remote isp's contact information. If you contact the ISP and report what ip it was at what time, they should be able to review thier logs and identify what individual was using that ip at that time

http://www.psacake.com/web/eg.asp

-Jesse
Logged
Pages: [1]   Go Up
  Print  
 
Jump to: