Internet cafes Hacking Strategy


Some Internet users question: I do not know why bars host nightly around 1:40 Association of problems. The first is the phenomenon of ADSL dried up. Then disconnect, then dial up is out. Reboot is useless. Last night, after restart, dial up, open the Web page has a blue screen. Telecom originally thought it was something, but the call to the network there, they did not maintain equipment. And could not work overtime every day. Have no nearby source of interference, I think, is that some people in some purposes, want to come to attack us. But do not know what can be confirmed? My host is Windows 98 + comes with ICS. Installed "Kingsoft Internet Security," no run "Kingsoft Internet Security."

Answer: Symptoms of view, ISP (telecommunications) were the most likely problem, but since this friend has identified the problem not the ISP, and then only from their own to find the reason and resolve.

Because the symptoms are unique, so we press: identify the problem → solution → Introduction to prevent the steps in turn.

1, to determine whether attacks

The system upgrade to Windows 2000, use Network Monitor to determine whether the hackers. Had in Windows 98 can use Network Monitor, but the effect was not as good as Windows 2000, and as Internet cafes network server, use the Windows 2000 system, either from the stability and function is more appropriate to use. However, flaws in Microsoft's stuff, installed after the Windows 2000 patch yo mind, and now has launched Service Pack3 (recommended). There is a better way is to use Linux, so others can more effectively put an end to tamper with the host (because very few people will use, huh, huh ... ...).

Windows 2000 systems (Recommended Server Edition) comes with the Network Monitor, on the [procedure] → [Administrative Tools] which, if not installed, you can [Control Panel] → [Add or Remove Programs] → [Add Remove Windows Components] to select and install.

Use Network Monitor to check the attack as follows: in the day when ADSL will stop, turn off the system all Internet connections, including QQ, web pages, but do not disconnect the network. Start Network Monitor, observe the monitor on the analysis of network data packets, and if found to have a certain IP address and 192.168.0.1 (the host's IP address within the network) a network request (so that it seems difficult to understand, as long as you observe Each bag contains the IP 192.168.0.1 whether the data exist another change of IP address). Then it can be concluded that you are being attacked by hackers, because many Internet cafes assigned a fixed telecommunications gave IP, so the hackers can continue to attack this IP, ADSL disconnection cause. If you have some hacking knowledge can also be captured immediately instructed to track this IP, as long as the other party not to use the proxy server.

Tip: As mentioned earlier, the form sent over the network is a connectionless form, and send the data packet with the form, and network data package will contain the sender's IP address, the IP address of the recipient , Network Monitor's role is to drop these packets intercepted, translated and read, you can look down the original documents seized were 16 hex.

2, using the network firewall truncation attack

Know the source IP address of your attack, you can be against this. This is the best time to "Kingsoft Internet" start; or install a network firewall, in fact, "Kingsoft Internet Security" is a network firewall. You can specify which block of IP addresses, then the earlier the IP address traced to enter into it. Firewall will automatically block the IP over any network to send the request, effectively put an end to attacks.

3, with the ADSL router to replace the host

ADSL routers are generally built-in system, the functions and servers to achieve significant, agents can be achieved. Many hackers are now through the holes to attack Microsoft systems (Windows 2000 也好; Windows XP 也好; Windows 98 Yehao have many loopholes, do not think that the use Updata upgrade patch, you can worry everything was, Updata function itself would open a door for the hacker), now with the ADSL router to replace a server role, naturally we can prevent a number of hacker attacks, and it will not be exposed.

Tip: ADSL router is different from the normal Cisco router, priced at 4,000 yuan (Cisco router if the price can be several times the price), of course, functional, and Cisco's even close, but it was used for Internet cafes, in the When using do not configure the routing table, the same as setting the server, specify the IP, DNS, subnet mask, etc. on it, specific settings, the instructions for use will be described in detail.

Well, this question the writer's description of these, control whether you try to use have to know yo!