ARP Cache Poison is hacking my computer. Can anyone help me. Need to get port scanner to identify where the hacker is coming through and block him.
Please help!
Rick
Web Security and general support for tools found at AuditMyPC
ARP Cache Poison is hacking my computer. Can anyone help me. Need to get port scanner to identify where the hacker is coming through and block him.
Please help!
Rick
This is my first post. I hope this is in the right place.
I have been using the AuditMyPC firewall scanner and have both kudos and a grumble.
The "Standard Security Scan" found an open Port 4567 which turned out to be a deliberate backdoor in my Actiontec modem. I have been able to close that one – thank you.
However…… I am running a web server on Port 80 and none of the available scan modes (Standard, Ranged or Advanced) seems to be able to find it.
I’ve tried GRC’s Shields Up and NMap. Both respond appropriately as I start and stop my WWW server.
What’s up?
Hello!
I’ve just run netstat -ano command on my PC. I see, that there are some groups of ports, which are not familiar to me: TCP 4260-4263 and TCP 2032, 2041,2044,2047. I couldnt fined any useful information about them in the Net. Can anybody tell me which service or application use them.
Hi
My ftp program has stopped working all of a sudden (its been fine for 2 years) and I can’t connect to my server. My host has asked me to check my firewall settings and to see if my firewall allows 30000 – 50000 ports. I use AVG free and I have the windows firewall…
How do I do this?
Thanks
Caroline
I get email via yahoo from 3 persons with different names
As I susspect the 3 to be the same ONE person I started looking at the URL details and found they all have the same http://us.lrd.yahoo.com/_ylt=AupPVo1qF_GoLbW2yzBHzRHTqr0X/SIG=
Is it correct to believe this all is one user from one computer
Any reply would be appreciated frank_sa59@hotmail.com
I thought I would pass this information out as I am working to market PhoneFactor. With phonefactor, your passwords become much more complex. Here is what you should fax to your bank to help phone factor grow.
VIA FACSIMILE
Mr. John Smith, CEO
Your Bank
Dear Mr. Smith
I am one of your customers in Your City, Your State.
I am concerned about the security of my online bank account.
In this day and age, it is easy for someone to steal my username and password and use it to login to my online bank account.
I recently saw a TV commercial for PhoneFactor. With PhoneFactor, I can instantly get a call when I login to my account. I simply answer the call and enter a PIN to complete my login.
Safe and simple.
When can we expect your bank to begin offering PhoneFactor?
Your Name
Your City, State
Your Email Address
PhoneFactor is a phone based two teir system that removes the need for extra security devices. When users log into their bank or other account, they will receive a call that verifies security. All you will need to do is press # to authenticate and it works with any phone.
PhoneFactor is currently Free and works with any VPN, enterprise application, or website plus it eliminates the need for tokens and is a snap to setup.
By Gale Yocom
Data leaks are increasingly becoming a challenge in security concerns with the unprecedented rise in communication mediums. Most data leaks are unintentional rather than deliberate, but can nevertheless cause irreparable damage to a company’s clientele, reputation, or compliance requirements for maintaining confidentiality.
Despite the widespread implementation of security devices such as firewalls and data encryption, data theft is still a relatively common phenomenon. There are many causes of security breaches: one third of data leakages in the previous year occurred because of virus attacks and another third through frauds committed by insiders with access to high security data.
Leaks can also inadvertently occur when, for example, an employee decides to take work home for the weekend and uses unprotected mail systems such as Yahoo! to access sensitive work information. HTTP and FTP links can also act as avenues through which your information can leave your premises without your knowledge.
There are a few strategic ways in which you can monitor your data to check for fraudulent or unintentionally subversive activities:
* Know where your confidential information is located. It is critical to know the locations of confidential information in your organization. Always ensure that you close access to these when a project is complete or when the files are no longer being actively used. This is also particularly a concern with removable storage, such as disks and pen drives.
* Keep track of how and where confidential data is transferred. Data often travels from person to person via electronic mail and other mediums. It’s imperative to keep track of where sensitive data is being transferred and to monitor the channels of communication being used by those who have access to confidential data.
* Create standardized data security policies. Data leaks are not just a security concern, they can have an overall impact on your business and the quality of your work ethic. Standardized regulations or data distribution policies can help you guard your sensitive information so that it cannot fall into the wrong hands.
Many solutions are targeted toward incident response, but effective measures of prevention also need to be implemented to prevent incidents from occurring. All companies should consider acquiring more stringent methods of safeguarding their data and implement Security Awareness Training for employees to prevent unwarranted or deliberate leaks of information. For some companies, Data Leak Prevention resources are critical.
For example, companies under compliance regulations or who regularly work with proprietary client-confidential data, companies that frequently outsource work, or companies with projects being conducted on offshore premises should definitely consider a professional data security package.
Data leaks do not always occur through technology breaches. Always use caution when giving out information about yourself, your clients or your employees over the telephone. Spammers or phishers often penetrate the defenses of their targets by posing as representatives of an organization such as a bank or government office. Managing your intellectual property takes considerable effort and constant monitoring. Never think that your company is too small or your information too irrelevant to be at significant risk of potential pharming or phishing attacks.
Prevention systems need to follow the three key strategies listed below in order to be completely effective. If one or more of these steps is not taken to ensure the protection of your data, you could find yourself the target of various forms of security breaches that could compromise your compliance to regulations or your business as a whole.
1. Discovery:
The discovery of sensitive data and its extant locations is the first key process in identifying your data security needs. This includes internal databases and possible avenues through which such information may be released or distributed. Even legitimate channels of distribution such as internal mail servers and intranets should be identified as carriers of sensitive data which are subject to breaches. Only when these mediums are identified can you efficiently create data protection policies and regulations and implement them successfully.
2. Monitoring:
Once mediums carrying confidential data are identified and the relevant policies have been implemented successfully, it is imperative that such channels be monitored around the clock. Professionally developed data leak prevention tools not only monitor your data, but also create reports so that you are kept constantly updated on the status of your information and its locations.
3. Protection:
Always ensure that your data leak prevention policies are mapped to the rest of your business processes. Automated regulation policies can monitor and control your databases and run real-time checks on your information to ensure that it is secure and to inform you of any breaches as soon as they occur. DLP tools can make you confident that your data is protected at all times, both when it is in use and also while it is stored.
One vendor in particular stands out. Websense provides data leak prevention solutions that can help you manage your databases and the fluidity of your information networks by enabling you to manage your information and the channels through which it is distributed. Websense can assist you in many ways, protecting your data and ensuring that you are the one in charge of who has access to your information:
* Websense uses state-of-the-art technology such as third generation fingerprinting; agentless, situational awareness and discovery of data networks to minimize and preempt threats of data leakage.
* Customizable policies and templates can be adapted to suit your needs, and tools, such as those that audit your business processes and monitor your proprietary data, (such as source code) may be implemented to significantly reduce risks.
* Protect and control your data with policy regulations, incident management and enterprise solutions that fit into your existing infrastructures.
Many providers of professional security data leak prevention systems offer free risk assessments. You might consider such a program to gauge the risks that your intellectual property and sensitive information are exposed to every day. By implementing data leak prevention tools, you can protect your data from external as well as internal leakage and ensure that your business processes run more smoothly.
Hello,
I’ve been trying to scan my port but i have been receiving this message:
We detected that you are using some type of proxy or cache server. This means that if we continue, we would be scanning a computer other than your own. Large companies, such as AOL and others, use proxy and cache servers to speed up your connection to the Internet; we can not continue the scan at this time. If we are mistaken, please let us know! Thank you.
I’m not using a proxy or cache server, i’ve used a scanner to find my proxy and it said i didn’t have one.
I used IE and Mozzila FireFox.
ITSrichardd_@hotmail.com
hi all
thanks for spending ur valuable time here…
when i am accessing my website it is working fine for me….
but when am generating reports from this website am getting error as follows.
if the report having less than 8 pages no error is coming…when the report exceeds more than 8 pages am getting error as follows…
how can i solve this issue…
am using segate crystal report for generating reports from website……
***********************
Network Error (tcp_error)
A communication error occurred: ""
The Web Server may be down, too busy, or experiencing other problems preventing it from responding to requests. You may wish to try again at a later time.
For assistance, contact your network support team.
**********************
hello,
I seen many people ask on the internet if you can open a web page from a ip address .
The question is can you open a web page with a ip address .
If any on can tell me yes or no to this question it would hep.
And if you can how.
Thankyou
I’m experiencing a flood of udp traffic going to multiple ip addresses on port 2781. I can’t seem to figure out what is causing it. Can anyone help please?
i am a student of BSCS. i want to do my project in security kindly suggest me a project thanks
my id is
asim_araeen@yahoo.com
hi !
i had followed your intructions to disable NetBIOS over TCP/IP ….
but after restarting computer i couldn’t connect to internet…
connection was not available…
could you please explain it…?
regards
polhen
Hi everybody, I am new here. I don’t know how to make the security audit run. I enter my ip address, then what do I do?
Hi
On this page http://www.auditmypc.com/anonymous-surfing.asp
You are from CITY, XX, in the XXXXXX, with an ip of XXX.XXX.XXX.XXX
What does the field in RED, after CITY indicate?
Can someone look at this message and tell me what may be going on, i can’t translate it.
The Windows Firewall has detected an application listening for incoming traffic.
Name: –
Path: C:WINDOWSsystem32lsass.exe
Process identifier: 500
User account: SYSTEM
User domain: NT AUTHORITY
Service: Yes
RPC server: No
IP version: IPv4
IP protocol: UDP
Port number: 2528
Allowed: No
User notified: No
For more information, see Help and Support Center at
I am also getting this in event viewer by a known possible suspect:
The PsExec service was successfully sent a stop control.
For more information, see Help and Support Center at http://go.microsoft.com/fwlink/events.asp.
Hi,
I hope this is the right place for my question. I was reading The anonymous surfing page which showed my IP address and its map. The map was completely wrong, I don’t live there at all. Why, I wonder?
Thank you.
Hello
PART 1
Can i have answer one question i have. Why have i come across 16661 colored red, 66 ,1666 colored red , 16661 .(Also when going to make phone a call while dialling a number , 4 computer voices 1 on each phone. Phone number 1 said some thing but i can’t say what it said ,then it went . Then i put down the phone and pick it up and it never came back this was in 1996 . In 1997 phone 2 had a computer voice saying 1 but this time it did not go ,you could pick up the phone and each time it would say 1 then you could make a call or put it down and pick it up and it would still say 1 . Phone 3 said another computer voice but i can’t say what it said , then it went . Then i put down the phone and pick it up and it never came back. Phone number 4 said another computer voice saying 1 but it did not go, you could pick up
the phone and it would say 1 and then make a call or just put it down.) .
PART 2
Why does it look like this 16661 colored red ( phone 1 has a computer voice then goes ) 66 (phone 2 has a computer voice that says 1 )
1666 colored red ( phone 3 has a computer voice then goes ) 16661 (phone 4has a computer voce that says 1).
PART 3
When looking at PART 2 ( 16661 colored red , 66 , 1666 colored red , 16661)
and ( phone 1 2 3 4) . You will see in PART 4 ( 16661 colored red ,66, 1666 colored red, 16661) looking like this.
PART 4
This how they will look with the phone 1234 in this order phone number 1 , phone number 4, phone number 3 , phone number 2 ( 16661 colored red , 16661 , 1666 colored red, 66)
I don’t know why this has come about
bye
billyboutin
All
We are looking for people with Cisco Wireless Access Points who are interested in beta testing software that will produce Security reports for Audits and Compliance. The reports test compliance with PCI DSS requirements:
11.1 Detects rogue APs
3.4 Shows encryption used in APs
4.1.1 Shows dates of last encryption keys
2.1.1 Finds APs that broadcast their SSID
2.1.1 Shows APs with Default Admin ID
2.1.1 Identifies APs with default passwords
2.1.1 Find APs with community string =public
1.1.7 Shows AP’s with FTP Enabled
10.5.4 Monitors Access Point Event Logs
If you are interested in, please post your information to the thread.
Thanks!
Hey, I was just wondering if www.portforwarding.com seems like a legit site? I am asking this because I was on their site and entered in my ip address, and subnet mask, and was wondering if they could now use this information to track my computer (websites visited, keystrokes, etc.)? What do you think?
Hello!
I make my test on yours site and as I read before your java aplet found my private IP. I have one external firewall and obviously I´m worried.
Can you help me to prevent this situation.
Could I set firewall settings or any software for prevent this situation.
I try use anonymous firewall, they works in fake external ips, but the aplet found the internal correct IP.
I´m studing network administration, and this is the first time I found something like that applet.
Maybe you could help me to learn something more about network security, and tell me to prevent this situation.
Best Regards.
Reply With Quote
I am new to the wireless networking world and was wondering about a few things. I ran the anonymous surfing tool on this website and only my IP address came into view. The map was completely wrong about where my computer was coming from (I guess this is a good thing?). I have McAfee security suite running along with all the other standard windows defaults. Can anyone track anything from this computer? I also downloaded wireshark as suggested in another feed and found it interesting even though I did not really know what the little packets meant. I had about 4000 of them in a matter of five minutes without any work on my part. Interesting.
Hi,
I used the port scanner on this site. I was hoping to find if and what ports my ISP is blocking. The response of a couple of versions of the test was:
|
This Port Scanner will help your find holes (open ports) on your firewall and provide information related to those ports. We scanned the ports you requested, looking for any services or viruses that might be running on them, and did not find anything |
This indicates that no ports are open, which is rediculous because at least web page porst (port 80?) must be open otherwise I wouldn’t be able to access the port scan on this site in the first place, right? I’m not even using any firewall software.
So what’s going on there? How can I find out which ports are being blocked by my ISP, if any?
Thanks.
Just curious… how does your Firewall test compare with GRC’s Shields Up (https://www.grc.com/) test?
Tx
-R
Hello,
I was reading your web page on tcp port 16661
and it said tcp port 16661 was (colored red),
if this is of any help i was on word 98 on my computer with a blank page and then i was not looking at it when i looked back at it there was 1666 in the middle of my page, the rectangle colored red was around the 1666 and the 1666 was in black . This could not have been bigger than a match box,may be this has something to do with the password i that was in use at the time .
bye
if you have any info on this it would help
BILLYBOUTIN
billyboutin@yahoo.com
This page: Anonymous Proxy – Hide your tracks!
It found my private IP. I was wondering if I could see the code on how that was done, or at least be pointed in the right direction. Im used to wokring with php and it seems that this script is in ASP.
Any help is appreciated.
Hi,
I just did a full 65k port scan with all good results. I ran two spyware programs with no hits but tracking cookies. I’m running antivirus now, getting [and anticipating] no hits.
The problem is that my network icon’s been lit up for at least an hour. Packets seem to be changing hands about the same rate as during the port scan. 56k sent 61k received right now. I restarted the computer when I first noticed this and the network was immediately active before I even logged back on[judging by looking at the router].
How can I tell where this traffic is going?
…antivirus just finished with no hits. The hard drive light is NOT coming on. The network lights ARE on[4k more packets since last count above].
Thanks to all!
B
Hire a company to do a security audit of your network from the outside, and you could be looking at $10,000 or more.
If you would like to use the same security software the pro’s use, then visit Nessus and download their software and run the audit from home.
Nessus is the very best in free security audit software and although it may take a while to learn how to run the audit, it’s worth it if you are responsible for your organization.
What is nice about this software is that their database is updated continually so that the scan will check for the latest vulnerabilities.
If you run a large organization, are in charge of security or want to do an in-depth audit of your network, then download Nessus.
Copyright © Web Security.mobi All Rights Reserved. ·
Comments