Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Generic User Avatar

Home network hacked


  • Please log in to reply
52 replies to this topic

#46 Ciceroo

Ciceroo
  • Topic Starter

  •  Avatar image
  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:07:49 AM

Posted 15 March 2024 - 06:40 PM

If I remember correctly, my ISP said they have only automated systems in place for monitoring ddos attacks and some other forms of attacks coming from their customers. But in other cases they are not responsible or even have the right to monitor the security of customer's devices and their traffic. 

 

With (personal) info I meant e.g. personal notes I keep on my desktop which I have not shown to anyone and personal pictures.



BC AdBot (Login to Remove)

 


#47 cryptodan

cryptodan

    Bleepin Madman


  •  Avatar image
  • Members
  • 34,434 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:05:49 AM

Posted 15 March 2024 - 06:53 PM

They own the ip address you use to get internet so yes they woukd monitor in bound and outbound traffic. My ISP FiOS by Verizon does this.

Also did you share any screenshots of your desktop with thus info open via screenshare on discord or other apps that they saved then later used to cause this paranoia

US Navy Veteran from 2002 to 2006

Masters in Computer and Digital Forensics Expert - Stevenson University Alumni 2015

Arch Desktop - https://termbin.com/epij

Arch Laptop - https://www.termbin.com/dnwk

Ubuntu Server - https://termbin.com/zvra


#48 Ciceroo

Ciceroo
  • Topic Starter

  •  Avatar image
  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:07:49 AM

Posted 16 March 2024 - 05:56 PM

Yes, I know my ISP monitor's my incoming and outbounding traffic and saves it for a period of time for legal/intelligence reasons. But what I was trying to say, when they do get involved in it ? Well, mostly, when they get contacted by authorities in my country. And that will most likely take months in this case.

 

And no, I didn't share any screenshots with anyone.

 

If you wish, we can take this to private messages. You or your contacts can most likely go to the Discord server I'm talking about (where the hack happened) and poke the ice.



#49 cryptodan

cryptodan

    Bleepin Madman


  •  Avatar image
  • Members
  • 34,434 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:05:49 AM

Posted 16 March 2024 - 06:02 PM

Send me the discord in private ill lurk there to ascertain their knowledge

US Navy Veteran from 2002 to 2006

Masters in Computer and Digital Forensics Expert - Stevenson University Alumni 2015

Arch Desktop - https://termbin.com/epij

Arch Laptop - https://www.termbin.com/dnwk

Ubuntu Server - https://termbin.com/zvra


#50 Ciceroo

Ciceroo
  • Topic Starter

  •  Avatar image
  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:07:49 AM

Posted 17 March 2024 - 01:29 PM

I may have figured out when the hack happened. It may have happened on 22.8.2023. I have never cleaned my Windows 10 Event Viewer logs, I still have some entries from 2020. The exceptions are System log which begins on 22.8.2023. Also I got the definitive proof of the hack on 11.2.2024. Security log begins on 12.2.2024.

 

Is it possible the hacker did something on 22.8 wiping my System log and later when he was cleaning his tracks he did something to cause Security log to wipe ?



#51 cryptodan

cryptodan

    Bleepin Madman


  •  Avatar image
  • Members
  • 34,434 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:05:49 AM

Posted 17 March 2024 - 01:32 PM

Your logs can be cleaned up automatically as they get full

US Navy Veteran from 2002 to 2006

Masters in Computer and Digital Forensics Expert - Stevenson University Alumni 2015

Arch Desktop - https://termbin.com/epij

Arch Laptop - https://www.termbin.com/dnwk

Ubuntu Server - https://termbin.com/zvra


#52 Ciceroo

Ciceroo
  • Topic Starter

  •  Avatar image
  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:07:49 AM

Posted 17 March 2024 - 02:16 PM

You're correct, I checked the default policies for automatically clearing the logs. They have a max size and entries will get replaced beginning with the oldest. System and Security logs have reached the max size.

 

Could any of the Event Viewer logs provide evidence of the hack ? 



#53 cryptodan

cryptodan

    Bleepin Madman


  •  Avatar image
  • Members
  • 34,434 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:USA
  • Local time:05:49 AM

Posted 17 March 2024 - 02:32 PM

Depends on how the hack tool is configured.

US Navy Veteran from 2002 to 2006

Masters in Computer and Digital Forensics Expert - Stevenson University Alumni 2015

Arch Desktop - https://termbin.com/epij

Arch Laptop - https://www.termbin.com/dnwk

Ubuntu Server - https://termbin.com/zvra





1 user(s) are reading this topic

0 members, 1 guests, 0 anonymous users