Help - hacked server
Posted: 2008-09-22 16:04
I have been hacked, but I cant figure out how to keep this guy from logging in. Can anyone tell me how to keep this guy from using my server to send spam? I cant even tell what account he is using.
Here is the transcript:
"TCPIP" 3284 "2008-09-22 08:52:09.194" "Created accept socket 1384 on listening socket 924"
"DEBUG" 3284 "2008-09-22 08:52:09.194" "Socket::Socket(ID: 330)"
"SMTPD" 3284 330 "2008-09-22 08:52:09.194" "92.83.231.148" "SENT: 220 dbakerber.net ESMTP"
"SMTPD" 3284 330 "2008-09-22 08:52:09.397" "92.83.231.148" "RECEIVED: EHLO User"
"SMTPD" 3284 330 "2008-09-22 08:52:09.397" "92.83.231.148" "SENT: 250-hmailserver[nl]250-SIZE[nl]250 AUTH LOGIN"
"SMTPD" 3284 330 "2008-09-22 08:52:09.631" "92.83.231.148" "RECEIVED: AUTH LOGIN"
"SMTPD" 3284 330 "2008-09-22 08:52:09.631" "92.83.231.148" "SENT: 334 VXNlcm5hbWU6"
"SMTPD" 3284 330 "2008-09-22 08:52:09.819" "92.83.231.148" "RECEIVED: b3JhY2xl"
"SMTPD" 3284 330 "2008-09-22 08:52:09.819" "92.83.231.148" "SENT: 334 UGFzc3dvcmQ6"
"SMTPD" 3284 330 "2008-09-22 08:52:10.053" "92.83.231.148" "RECEIVED: b3JhY2xl"
"SMTPD" 3284 330 "2008-09-22 08:52:10.053" "92.83.231.148" "SENT: 235 authenticated."
"SMTPD" 3284 257 "2008-09-22 08:52:10.100" "221.234.24.46" "RECEIVED: RCPT TO:<hum@aol.com>"
"SMTPD" 3284 257 "2008-09-22 08:52:10.100" "221.234.24.46" "SENT: 250 OK"
"SMTPD" 3284 330 "2008-09-22 08:52:10.272" "92.83.231.148" "RECEIVED: RSET"
"SMTPD" 3284 330 "2008-09-22 08:52:10.272" "92.83.231.148" "SENT: 250 OK"
"SMTPD" 3284 281
Here is the transcript:
"TCPIP" 3284 "2008-09-22 08:52:09.194" "Created accept socket 1384 on listening socket 924"
"DEBUG" 3284 "2008-09-22 08:52:09.194" "Socket::Socket(ID: 330)"
"SMTPD" 3284 330 "2008-09-22 08:52:09.194" "92.83.231.148" "SENT: 220 dbakerber.net ESMTP"
"SMTPD" 3284 330 "2008-09-22 08:52:09.397" "92.83.231.148" "RECEIVED: EHLO User"
"SMTPD" 3284 330 "2008-09-22 08:52:09.397" "92.83.231.148" "SENT: 250-hmailserver[nl]250-SIZE[nl]250 AUTH LOGIN"
"SMTPD" 3284 330 "2008-09-22 08:52:09.631" "92.83.231.148" "RECEIVED: AUTH LOGIN"
"SMTPD" 3284 330 "2008-09-22 08:52:09.631" "92.83.231.148" "SENT: 334 VXNlcm5hbWU6"
"SMTPD" 3284 330 "2008-09-22 08:52:09.819" "92.83.231.148" "RECEIVED: b3JhY2xl"
"SMTPD" 3284 330 "2008-09-22 08:52:09.819" "92.83.231.148" "SENT: 334 UGFzc3dvcmQ6"
"SMTPD" 3284 330 "2008-09-22 08:52:10.053" "92.83.231.148" "RECEIVED: b3JhY2xl"
"SMTPD" 3284 330 "2008-09-22 08:52:10.053" "92.83.231.148" "SENT: 235 authenticated."
"SMTPD" 3284 257 "2008-09-22 08:52:10.100" "221.234.24.46" "RECEIVED: RCPT TO:<hum@aol.com>"
"SMTPD" 3284 257 "2008-09-22 08:52:10.100" "221.234.24.46" "SENT: 250 OK"
"SMTPD" 3284 330 "2008-09-22 08:52:10.272" "92.83.231.148" "RECEIVED: RSET"
"SMTPD" 3284 330 "2008-09-22 08:52:10.272" "92.83.231.148" "SENT: 250 OK"
"SMTPD" 3284 281