egghelp.org community Forum Index
[ egghelp.org home | forum home ]
egghelp.org community
Discussion of eggdrop bots, shell accounts and tcl scripts.
 
 FAQFAQ   SearchSearch   MemberlistMemberlist   UsergroupsUsergroups   RegisterRegister 
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 

asking help for shell command

 
Post new topic   Reply to topic    egghelp.org community Forum Index -> Shell & Bouncer Help
View previous topic :: View next topic  
Author Message
qwek
Voice


Joined: 21 Sep 2004
Posts: 35
Location: space

PostPosted: Fri Aug 19, 2005 7:14 pm    Post subject: asking help for shell command Reply with quote

excuse me, how can i track / trace / scan from my shell if someone has doing ddos attack to my shell? what can i use (command on shell)? thanks

best regards,
qwek
Back to top
View user's profile Send private message
demond
Revered One


Joined: 12 Jun 2004
Posts: 3073
Location: San Francisco, CA

PostPosted: Fri Aug 19, 2005 7:51 pm    Post subject: Reply with quote

are you root?
Back to top
View user's profile Send private message Visit poster's website
qwek
Voice


Joined: 21 Sep 2004
Posts: 35
Location: space

PostPosted: Fri Aug 19, 2005 11:29 pm    Post subject: Reply with quote

demond: nope, i'm just bought some shell from shell company and my bot always died without good reason (ping timeout) and after while im checking maybe my shell got something wrong and then i'm asking our admin and he said someone has doing udp packet into my account. suddenly the admin shell temporary closed my account for a while. i'm asking to admin what iphost has doing udp packets but he didnt replied me (until now). can i trace/track/scan from ssh/putty how to get those iphost (doing some udp packets?)
Back to top
View user's profile Send private message
demond
Revered One


Joined: 12 Jun 2004
Posts: 3073
Location: San Francisco, CA

PostPosted: Fri Aug 19, 2005 11:47 pm    Post subject: Reply with quote

no, you can't; tracking those kinds of things requires root privileges
Back to top
View user's profile Send private message Visit poster's website
qwek
Voice


Joined: 21 Sep 2004
Posts: 35
Location: space

PostPosted: Sat Aug 20, 2005 1:51 am    Post subject: Reply with quote

is there no other way to do? ok then. btw thanks for your help demond.

regards,
qwek.
Back to top
View user's profile Send private message
Alchera
Revered One


Joined: 11 Aug 2003
Posts: 3344
Location: Ballarat Victoria, Australia

PostPosted: Sat Aug 20, 2005 2:29 am    Post subject: Reply with quote

qwek wrote:
is there no other way to do?

In a way. If you have the IP(s) from your shell admin just run (in Windows) NeoTrace. I am not sure what benefit, if any, will be derived by the exercise though.
_________________
Add [SOLVED] to the thread title if your issue has been.
Search | FAQ | RTM
Back to top
View user's profile Send private message Visit poster's website
demond
Revered One


Joined: 12 Jun 2004
Posts: 3073
Location: San Francisco, CA

PostPosted: Sat Aug 20, 2005 3:20 am    Post subject: Reply with quote

Alchera wrote:
qwek wrote:
is there no other way to do?

In a way. If you have the IP(s) from your shell admin just run (in Windows) NeoTrace. I am not sure what benefit, if any, will be derived by the exercise though.


nope, that won't help

virtually all DoS-ing techniques have been using spoofed source IP addresses for many years now

tracing DoS (let alone DDoS) source is not an easy task even if you are root... if you are not, forget about it

and you definitely can't even detect DoS if you are not root, since you neither have access to your firewall's logging facilities nor you can run a packet sniffer software; of course, if you find it's difficult or impossible to log into your shell account and your bot tends to die with "Ping timeout" more often than not, there's pretty good possibility your host machine is being DoS-ed
Back to top
View user's profile Send private message Visit poster's website
qwek
Voice


Joined: 21 Sep 2004
Posts: 35
Location: space

PostPosted: Sat Aug 20, 2005 10:36 pm    Post subject: Reply with quote

what if i asking admin shell to added me as a root? do i allowed? i think this is impossible Razz eheh
Back to top
View user's profile Send private message
Alchera
Revered One


Joined: 11 Aug 2003
Posts: 3344
Location: Ballarat Victoria, Australia

PostPosted: Sat Aug 20, 2005 11:05 pm    Post subject: Reply with quote

qwek wrote:
what if i asking admin shell to added me as a root? do i allowed? i think this is impossible Razz eheh

Oh very doubtfull unless you're a personal friend and then maybe not. And demond mentioned that even root access will not guarantee tracing the culprit(s). They will get bored however and leave you alone in the end. Smile

demond wrote:
nope, that won't help

I did mention I doubted there was any point. Razz

There was one fool once that my admin and I were actually able to trace after a DoS-ing incident. Not all have brains.
_________________
Add [SOLVED] to the thread title if your issue has been.
Search | FAQ | RTM
Back to top
View user's profile Send private message Visit poster's website
Display posts from previous:   
Post new topic   Reply to topic    egghelp.org community Forum Index -> Shell & Bouncer Help All times are GMT - 4 Hours
Page 1 of 1

 
Jump to:  
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum


Forum hosting provided by Reverse.net

Powered by phpBB © 2001, 2005 phpBB Group
subGreen style by ktauber