Democratic Underground Latest Greatest Lobby Journals Search Options Help Login
Google

Caught my computer cheating on me this morning.

Printer-friendly format Printer-friendly format
Printer-friendly format Email this thread to a friend
Printer-friendly format Bookmark this thread
This topic is archived.
Home » Discuss » Archives » General Discussion (1/22-2007 thru 12/14/2010) Donate to DU
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 01:49 PM
Original message
Caught my computer cheating on me this morning.
logging on to csis.org

Since when are they in the business of spying on american citizens?

They're supposed to be a right-wing think tank.

Been watching them for a couple of weeks on my computer.
Printer Friendly | Permalink |  | Top
Mutineer Donating Member (659 posts) Send PM | Profile | Ignore Tue Oct-09-07 01:55 PM
Response to Original message
1. I'm going to say this very respectively.
WTF are you talking about? Please explain.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:01 PM
Response to Reply #1
2. Someone put a root kit on my system.
Every time I boot up, it logs into csis.org and sets up a connection to my computer.

Whoever did it knows how to break into secure UNIX systems.
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:06 PM
Response to Reply #2
3. "logs into" or "my web browser goes to the website of"?
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:11 PM
Response to Reply #3
4. It's very discreet.
It's all in the background. Usually by the time Xwindows comes up, the deed is done and they've erased their tracks.

I don't think i've ever logged onto their site.

They usually show up just after I log onto DU.
Printer Friendly | Permalink |  | Top
 
againes654 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:17 PM
Response to Reply #4
5. Sounds fishy
"They are watching"
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:19 PM
Response to Reply #5
6. What do you mean, "sounds fishy"?
If you don't believe me, don't.

Since it appears connected to my activity on DU, I thought to warn other members.
Printer Friendly | Permalink |  | Top
 
againes654 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:22 PM
Response to Reply #6
7. Actually I do believe you
since I don't know exactly what website you are talking about (and don't really want to log on so they don't watch me) I thought that what you were describing sounded fishy i.e. someone is watching your activity on the net. Hence my "they are watching" comment.

Take a chill pill, I am on your side
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:50 PM
Response to Reply #7
48. I'm chillin'
My chill pill just kicked it and my jets are back to normal temperature. :hi:
Printer Friendly | Permalink |  | Top
 
againes654 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 07:59 PM
Response to Reply #48
64. "Cool"
ha, get it, I make a funny.....at least to me......:rofl:
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 07:04 AM
Response to Reply #64
74. Is that "cool", like in "cool your jets?"
:rofl:

Inside joke to someone who understands the vernacular.
Printer Friendly | Permalink |  | Top
 
donsu Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 11:25 AM
Response to Reply #6
83. yes, I know
nt
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:22 PM
Response to Reply #4
8. How are you logging onto DU before xwindows comes up?
and how are you aware of it at all?
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:36 PM
Response to Reply #8
12. They are connected long before the browser comes up.
even before Xwindows completes loading.
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:39 PM
Response to Reply #12
15. How did you become aware of the problem?
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:48 PM
Response to Reply #15
21. usually soon after posting something inflammatory or controversial
Edited on Tue Oct-09-07 02:51 PM by formercia
someone would spike my connection.

They were being very obvious.

It was getting really obvious when Xwindows would freeze befor I could finish typing out a post.

Someone was watching me type in real time.
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:49 PM
Response to Reply #21
24. "spike" your connection? after posting but before xwindows comes up?
I'm sorry, you aren't making any sense to me.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:54 PM
Response to Reply #24
27. After I log onto DU.
but I don't know at what point they began to watch.

Their activity didn't seem active until after logging into DU. If I just read DU without logging in, there didn't seem to be any activity. As soon as I log in, the fun starts.
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:56 PM
Response to Reply #27
29. but before you were saying it started befre xwindows started.
but it really starts after logging on to du?
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:04 PM
Response to Reply #29
34. The connection is made before Xwindows finishes coming up
their obvious activity starts after I log onto DU. They might be passively monotoring the connection from the beginning. Once they have my IP Number, it's not a big deal to monitor my traffic without doing anything on my computer. I suspect it logs in and gives them my IP Number since it changes from time to time.
Printer Friendly | Permalink |  | Top
 
sicksicksick_N_tired Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:12 PM
Response to Reply #21
41. Okay. Yes,...I had the same experience before my 'puter crashed.
I was, in essence, being shut down, shut up.

I wonder how many others have had the same experience and just figuring a glitch or virus or something.

:shrug:
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:35 PM
Response to Reply #41
45. I would guess that al lot of Du'ers have gone away out of frustration.
How many times do you have to rebuild your OS before you say"fuck it!?"
Printer Friendly | Permalink |  | Top
 
wildbilln864 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 04:22 PM
Response to Reply #41
54. I've had similar problems.
well, not really sure if they're similar but sometimes when I get on DU and one or two other sites, my keyboard goes all to hell. I cant type anything. The keys seem to change functions like when I am trying to type and hit the left arrow key, instead of the curser moving left, the browser goes back to the previous page. If I hit the backspace key when trying to type messages, everything I've typed is deleted and I have to start over. the right arrow does nothing then and other strange things. I usually have to restart to fix it. :shrug: I thought it was just a glitch with this computer.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 06:16 AM
Response to Reply #54
72. It sounds like someone is screwing with you.
On a former Windows machine they modified my BIOS to make it appear the Motherboard was defective.

I'm still using the same Motherboard after I flashed another copy of the BIOS and went to UNIX.
Printer Friendly | Permalink |  | Top
 
wildbilln864 Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 12:11 PM
Response to Reply #72
86. Yes they frequently mess with me....
when I go to certain sites. Or maybe I'm just paranoid but it only seems to happen when posting certain subjects like on DU and a cpl others. I almost think it's someone here sometimes but that's just too paranoid I guess.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 12:24 PM
Response to Reply #86
87. Ya never know
I only trust my cat. A cat can never be a rat.
Printer Friendly | Permalink |  | Top
 
Occulus Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:05 PM
Response to Reply #12
37. Does this occur when using a text browser like lynx,
or only in X?
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:33 PM
Response to Reply #37
44. Haven't tried it.
I'm not going to reward them by modifying my behavior. If they have time to waste on me, then there must not be a real terrorist threat or they would be busy elsewhere.
Printer Friendly | Permalink |  | Top
 
skids Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 05:55 PM
Response to Reply #44
56. Can you collect a pcap?

Also if you want to publish any more about it you'd best do it before you get a gag letter in the mail. As long as all you know is that it's going to some RW think tank, I think you are probably still within your legal rights to expose details until you have been served some sort of official certified mail telling you you're not allowed to talk about it.

Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 06:20 PM
Response to Reply #56
59. I'm sure they're working on it right now
I hope they don't get much sleep tonight.

assholes.
Printer Friendly | Permalink |  | Top
 
lapfog_1 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:37 PM
Response to Reply #4
14. So let me see if I can recap

You have a Unix based system... which one? And what version?

You run Xwindows on it.

When you start Xwindows and then a browser and point it at DU, a virus starts some sort of connection to an IP address of csis.org, and you believe it to start covering its tracks.

OK, most TCP stacks have logging facilities, so are they altering the log file?
How do you know it connected to csis.org? What type of "connection" was made? (UDP? TCP? ICMP? something else?)

If you have another unix system laying about, make it a gateway to the internet and route your traffic from your infected system through the gateway and turn on the maximum tracing on the gateway (down to capturing and recording the packet contents. Then use a filter to find only those packets going to the suspected IP address... dump them in HEX and post them here or email them to me... I'll might be able to figure it out).

Why bother with a browser under Xwindows? I have experience with other emulators (but not recent). But why not Firefox or some other browser from your unix desktop?

Just curious.

Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:45 PM
Response to Reply #14
18. I jjust happened to catch the tail end of the logging sequence
on a term window and caught the site login before it was erased.

I use firefox generally.

FreeBSD 6.2.

I checked all the log files and there was only a stub with 0 bytes.
Printer Friendly | Permalink |  | Top
 
lapfog_1 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 04:08 PM
Response to Reply #18
50. Sorry, had to take a lunch break and do "real work"

I have FreeBSD 6.1 on one of my systems, I tried using Firefox on it to browse DU and then looked for the "tracks" of malware or other, and found nothing out of the ordinary.

You say that the virus truncated your log files... which isn't very smart of them as that lets the aware sys admin know something hincky is up with the system...

do you have another computer that you can set up as a gateway? (you will need some unix or linux machine, two network interfaces, and some ability to configure things and, if your current network interface is DHCP and so on, some ability to configure NAT and domain resolution services (/etc/hosts, /etc/resolv.conf).

If you do this (make a Unix machine into a gateway/firewall), it will be very easy to trap this little bugger and find out lots of info on it.

Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 06:35 PM
Response to Reply #50
60. It didn't take them long to catch up
I got on a clean Mac to reply. Got 3 replies done and working on yours when my browser crashed and a window came up that said

Firefox is installing updates and will restart momentarily.

Yeah, right.


Looks like i'm going to have to rebuild that machine.
Printer Friendly | Permalink |  | Top
 
vogonity Donating Member (283 posts) Send PM | Profile | Ignore Tue Oct-09-07 02:54 PM
Response to Reply #4
26. Curious how you found it...
Did you use a packet sniffer?

Also wondering what flavor of UNIX you are using. I once had a Linux Box rooted, but I am sure it was by scriptkiddeez and not more nefarious sources.

I understand if you would rather not disclose the specifics of the OS, but hey I am always curious when someone who seems to know what they are doing with regard to security gets hacked.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:56 PM
Response to Reply #26
30. FreeBSD 6.2 n/t
Printer Friendly | Permalink |  | Top
 
The Doctor. Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:40 PM
Response to Reply #4
47. It's simple...
Log in to DU from another system, once, and check your pm box. Don't check it while on your current system.

K?
Printer Friendly | Permalink |  | Top
 
Mutineer Donating Member (659 posts) Send PM | Profile | Ignore Wed Oct-10-07 10:57 AM
Response to Reply #4
82. Oh, okay. Now I understand.
Thanks for the explanation--and I agree--something strange is going on for sure. How do the rest of us check and see if anything is hidden on our PC's?
Printer Friendly | Permalink |  | Top
 
Blue-Jay Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:23 PM
Response to Reply #2
9. Is this your home computer?
Work computer?
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:33 PM
Response to Reply #9
11. A little of both.
There's nothing on it that anyone can't see on DU for the most part.

I'm really not too concerned about what they might find. I does concern me that they are sufficienty savvy to break into a system that is much more secure than a Windows machine.
Every service I don't absolutely need is turned off and the firewall doesn't allow any incoming connections, not even localhost.

Printer Friendly | Permalink |  | Top
 
MyNameGoesHere Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:43 PM
Response to Reply #11
17. Kind of weird to boast about a much more secure system when it's been hacked. n/t
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:05 PM
Response to Reply #17
36. FreeBSD is known to be secure.
and I try to lock it down as much as I can beyond the base install.
Printer Friendly | Permalink |  | Top
 
MyNameGoesHere Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 10:43 AM
Response to Reply #36
81. Still someone hacked you on your "most secure freeBSD"
I have used DOS,windows, Zeta, BeOS, MAC OS and linux <FreeBSD, SuSe, Mandrake/driva, RedHat yadda yadda> since.. well a long time and have never got a virus or been hacked. Maybe the OS is not the key factor here after all.
Printer Friendly | Permalink |  | Top
 
Blue-Jay Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:49 PM
Response to Reply #11
23. Soooo... Someone broke into your house, installed spyware,
and did the same at your workplace?

I find that a little hard to believe, if you don't mind me saying so. To what purpose would someone hack two different computers that you use? Do you ever transfer files to/from work on a flash card or by email?

It's more likely that you clicked on a bad link or opened a bad email or installed a corrupted file or are simply mistaken about what you found.
Printer Friendly | Permalink |  | Top
 
Zywiec Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 06:34 AM
Response to Reply #23
73. Agreed. Most likely a script kiddie from a bad link
and since two people have asked for a pcap and the OP author won't even acknowledge the request, raises more questions. Why not just show a capture with the suspected established connection?
Printer Friendly | Permalink |  | Top
 
Bum Whisperer Donating Member (97 posts) Send PM | Profile | Ignore Tue Oct-09-07 02:26 PM
Response to Original message
10. Privacy is an antiquated concept
Technology is too far advanced for us.
Printer Friendly | Permalink |  | Top
 
catmandu57 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:36 PM
Response to Original message
13. So is there a way for a simpleton
to check to see if the same thing is going on? Are there things to watch for to know that someone is getting into your computer?
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:40 PM
Response to Reply #13
16. A slight increase in CPU overhead
but if you don't have anything to reference it, there's not much to see. I did find the stub of a file in /var/log, but it had been cleaned out.

These guys cover their tracks well.

Your tax dollars at work.
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:46 PM
Response to Reply #16
19. Explain what you mean by "the stub of a file in /var/log"
i know what /var/log is...tell me what you mean by "the stub of a file"
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:55 PM
Response to Reply #19
28. A file with a name and time stamp but 0 bytes. n/t
Printer Friendly | Permalink |  | Top
 
lapfog_1 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 04:12 PM
Response to Reply #19
51. The malware opened the file with O_TRUNC set.
not a very clever way to hide their tracks.

More clever would be to open the log file, read it and parse it, remove only the lines pertaining to the connection they wish to hide, rewrite it without those entries, and then set the time stamp back to the last modified time.

Of course, they could omit the time stamp change, as a log file is constantly updating and so, with the next entry, will hide their modification.

Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 05:54 AM
Response to Reply #51
69. Another stupid mistake
3 additional users in the passwd file.

They weren't satisfied with just one.
Printer Friendly | Permalink |  | Top
 
kestrel91316 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:04 PM
Response to Reply #16
33. There are times when my CPU sounds very "busy" making its
little humming noises when I'm not running anything that should cause it to do so. I have suspected that's when SOMEBODY from outside is doing something with my computer behind my back. I have DSL so it's always connected to the internet even when it's not, if you get my drift.

They won't find much other than my anti-fascist screeds here on DU, lol. And my visits to icanhascheezburger.com.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:07 PM
Response to Reply #33
38. Same here.
I really give a shit, but there might be others who would like a heads-up.
Printer Friendly | Permalink |  | Top
 
alfredo Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:47 PM
Response to Original message
20. google csis rootkit
Edited on Tue Oct-09-07 02:48 PM by alfredo
fromer ASA
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:58 PM
Response to Reply #20
31. The wolf guarding the sheep.
:rofl:
Printer Friendly | Permalink |  | Top
 
alfredo Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:40 PM
Response to Reply #31
46. What did they say about the rootkit?
Edited on Tue Oct-09-07 03:44 PM by alfredo
Could you change your root password?
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:54 PM
Response to Reply #46
49. I change my passwords on a regular basis.
I don't think it matters with a root kit.

Printer Friendly | Permalink |  | Top
 
lapfog_1 Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 04:17 PM
Response to Reply #49
53. No, highly unlikely they have your root password.

More likely they installed some executable or script file somewhere with SUID privileges. Which, for hackers, isn't that hard to do, especially from something you might have downloaded (like a java program or similar).

I surprised they bother to hack a FreeBSD OS... since something like 99 percent of the worlds computers are either Winblows, Linux, or Mac. Course, the same hack could work with Mac machines as well, given the basis for MacOS is, in fact, FreeBSD.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 06:18 PM
Response to Reply #53
58. It's a script
I saw it scrolling by in the terminal.

They probably tunnel through the kernel to bypass the firewall too.

It's a shame to find out that an outfit that is supposed to be white hats are in fact black hats.

It makes a great cover.
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 10:00 PM
Response to Reply #58
66. You've spewed more gibberish in this thread than i've seen in a long time.
Printer Friendly | Permalink |  | Top
 
skids Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 05:28 AM
Response to Reply #66
67. Sceptical too...

...without at least a pcap of the suspect traffic.

However, gibberish it aint, just overly terse. Everything he's said is technically consistent with a rootkit on a UNIX box and the terminology is correctly used.

Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 06:13 AM
Response to Reply #67
71. I'm no UNIX expert, just a user for about 10 years
I can't convince everybody and i'm not trying to. It's terse because I don't want to give away too much that might make their next attack easier yet still give knowledgeable people an idea where to look on their machine.

It's only gibberish to someone that is ignorant of the technology.
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 07:27 AM
Response to Reply #71
76. Well, I'm not ignorant...
I've run a linux server in corporate environs for over 6 years, run linux on my personal computers since 100 Mhz chips were the latest and greatest, along with a smattering of freeBSD on old Sun workstations.

And i think you are pulling our collective legs.

On second thought, maybe this is all legit. It just popped in mind:
Could it be that they forked your TCP stack, and instead of tunnelling thru the kernel they went straight to the hardware abstraction layer? As you are surely aware, this would enable them to scrub some unused cycles from your graphics card processor rather than your CPU, making things harder to detect. That would certainly explain the stubs, wouldn't it?

:rofl:
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 08:02 AM
Response to Reply #76
77. Funny boy.
You're just a barrel of laughs.
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 07:01 PM
Response to Reply #77
88. So are you.
Printer Friendly | Permalink |  | Top
 
alfredo Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 09:01 PM
Response to Reply #49
65. A clean install I guess is the only sure way to clean it out.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 05:57 AM
Response to Reply #65
70. That's the nice thing about FreeBSD
no issues about having extra drives with a fresh copy installed.

It only takes a few minutes to backup my directory and swap drives.

I've been playing this game with the boys for a long time.
Printer Friendly | Permalink |  | Top
 
alfredo Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 08:47 AM
Response to Reply #70
80. That's what I like about Linux. This machine will be my Linux
box when I get a new Mac.
Printer Friendly | Permalink |  | Top
 
sicksicksick_N_tired Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:49 PM
Response to Original message
22. I am a novice at that security stuff but got a new firewall,...
,...and I have all kinds of shit I've never touched show up.

My system crashed not so long ago. A 'techie' buddy of mine went through everything. He said my activities were being tracked but that wasn't unusual, these days. So, I just figure I am being tracked and there is nothing I can do about it.

Wow. I guess I've slipped into accepting 'big brother', huh. x(
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:10 PM
Response to Reply #22
40. Take Big Brother on a ride.
and make them read stuff that will really raise their hackles.

You might even convert one or two.
Printer Friendly | Permalink |  | Top
 
Megahurtz Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 07:31 PM
Response to Reply #40
63. Rofl! n/t
Printer Friendly | Permalink |  | Top
 
nadinbrzezinski Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 02:53 PM
Response to Original message
25. Free clue here, since 2002, if not earlier
I have assumed that they will track all I do, read my email, read my posts

Hi agent Mike...

And listen to my conversations

We went through that door back then

you just discovering on your system what I suspect is going on all the time... and just because we post here, we are at a higher risk, since we are freedom loving, constitution loving freaks (from their POV) and a theat to the strenth of the nation.

Your choice, now that you know this for sure, is to live free, or be afraid

Me... if they ultimately win I will pay for it... FUCK HOOVER...

Carry on...
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:00 PM
Response to Reply #25
32. They're not intimidating me
I assumed they have been watching all along.

I just thought others might be interested.

Fuck them.
Printer Friendly | Permalink |  | Top
 
nadinbrzezinski Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:05 PM
Response to Reply #32
35. That's the attitude
hell by now they found out I have a new machine... I wonder how long it took them to "crack" it.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:08 PM
Response to Reply #35
39. If it's Windows.
It probably has at least one back door built into the OS.
Printer Friendly | Permalink |  | Top
 
sicksicksick_N_tired Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 03:16 PM
Response to Reply #39
42. That's what I've been told.
When I'm able to afford it, I'll go MAC, I reckon.
Printer Friendly | Permalink |  | Top
 
nadinbrzezinski Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 05:56 PM
Response to Reply #39
57. Nah it's mac, got tired of fighting windows
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 06:46 PM
Response to Reply #57
61. Read #60. n/t
Printer Friendly | Permalink |  | Top
 
hunter Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 11:36 AM
Response to Reply #39
84. There are back doors built right into the hardware.
Edited on Wed Oct-10-07 11:48 AM by hunter
:shrug:

I suppose you could get out the old soldering iron and build a firewall from scratch if you were really, really paranoid, and even that's not going to protect you if someone wants to snoop bad enough.

In the end these huge piles of data they are collecting will probably turn out to be as useless as any other compulsive hoarder's stash.



They'll be so busy sifting through text messages they won't even see the truck that runs them over.

But for all you know this could be the work of some untalented right wing script kiddy who thinks he's defending the United States against libruls.

Edited because I was in a bad mood, but now I'm not. :P

Printer Friendly | Permalink |  | Top
 
absyntheminded Donating Member (110 posts) Send PM | Profile | Ignore Tue Oct-09-07 03:24 PM
Response to Original message
43. Scrub your box/GUID
And get a new IP from your carrier. Wouldn't hurt to roll back to Win2000 or XP.
Run a few good spyware programs too (ewidow?).
Printer Friendly | Permalink |  | Top
 
high density Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 04:14 PM
Response to Original message
52. This thread reminds me of "Jurassic Park"
with the kid sitting down at a computer and saying, "It's a UNIX system! I know this!"
Printer Friendly | Permalink |  | Top
 
ret5hd Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 04:24 PM
Response to Reply #52
55. My thoughts EXACTLY!
:rofl:
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Tue Oct-09-07 06:50 PM
Response to Reply #55
62. It probably is some pimply-faced geek
that get their kicks trashing other peoples' boxes.

About 20 years in the can might change their attitude.
Printer Friendly | Permalink |  | Top
 
Cessna Invesco Palin Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 05:43 AM
Response to Original message
68. Got the hell beat out of me doing community service.
Somebody had to say it.
Printer Friendly | Permalink |  | Top
 
formercia Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 07:20 AM
Response to Reply #68
75. Thanks for the kick.
:hi:
Printer Friendly | Permalink |  | Top
 
lonestarnot Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 08:09 AM
Response to Reply #68
78. Heh.
:rofl:
Printer Friendly | Permalink |  | Top
 
Zywiec Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 08:16 AM
Response to Original message
79. Maybe this will help you block them out




:rofl:
Printer Friendly | Permalink |  | Top
 
ecstatic Donating Member (1000+ posts) Send PM | Profile | Ignore Wed Oct-10-07 11:42 AM
Response to Original message
85. How might I found out if my computer is cheating on me? nt
Printer Friendly | Permalink |  | Top
 
DU AdBot (1000+ posts) Click to send private message to this author Click to view 
this author's profile Click to add 
this author to your buddy list Click to add 
this author to your Ignore list Wed May 15th 2024, 02:54 AM
Response to Original message
Advertisements [?]
 Top

Home » Discuss » Archives » General Discussion (1/22-2007 thru 12/14/2010) Donate to DU

Powered by DCForum+ Version 1.1 Copyright 1997-2002 DCScripts.com
Software has been extensively modified by the DU administrators


Important Notices: By participating on this discussion board, visitors agree to abide by the rules outlined on our Rules page. Messages posted on the Democratic Underground Discussion Forums are the opinions of the individuals who post them, and do not necessarily represent the opinions of Democratic Underground, LLC.

Home  |  Discussion Forums  |  Journals |  Store  |  Donate

About DU  |  Contact Us  |  Privacy Policy

Got a message for Democratic Underground? Click here to send us a message.

© 2001 - 2011 Democratic Underground, LLC