PDA

View Full Version : Hacker crashed my PC/Server with a DoD (or something else) !


Smasher
30-04-2008, 06:48
Hello everyone !

I recently installed the TeamSpeak Server client (and updated the *.exe file with the one in the Downloads Page) and ran it on my personnal computer to chat with friends while on games.

I quickly managed to run and configure the server (thanks to the great FAQ). Everything was running smoothly . . . until tonight ! !

I was on a online game of Company of Heroes with a friend when a dude joined our server (no password on it ><) and started saying he was from the "TS Police" (yeah right!) and was saying we had to o much ports on our server (user slots ? he said "Ports") and that this was not authorized by the EULA etc. My friend and I naturally thought it was a friend from my clan I had given the IP to that was making us a joke and that nothing would happen.

So we were like: "Yeah whatever, cut the crap"
And then the "hacker" said: "Ok, you'll see, thanks for your time, bye" and disconnected from the server. Then seconds after that, I got: disconnected from skype, and the game we were on and my internet connection seemed lost !

So I rebooted my PC/Server and by then my internet IP had changed and I could use skype and games again.

I have a firewall (free one: sunbelt personnal firewall), an antivirus (free one: avast personnal edition) and I have 2 antispyware programs running at the same time. I have opened only ONE port for the TS Server. And I used a service called DynDNS to hide my PC's IP to people connecting to my server.

Now I think this could have been a sort of Packet Flood or Denial of Service (DoD) attack, but I'm not sure.

I browsed the forums and it seems people have had the same kind of problems/troubles/attacks.

I was wondering if there is something that can prevent that (a patch? an option to cut off ?).

For now I've disabled Public Listing (which probably brought me the retard to my server).

Anyone know how to prevent that kinds of attacks in general please? Could he have gained access to my PC from that point and now would be able to find out my Credit Card number etc ?

I know it's a lot of questions, and we're not all computer scientists (i'm not ><), thanks for all the help you can give and for your time !

Regards,

Smasher

PS: I don't know if this is of much use but he said I could se his "TS Police Badge" by clicking Ctrl+E on his name (his name was Mijj). I don't know, maybe that's some sort of TS command?

Katana*GFR*
30-04-2008, 10:10
ctrl+e is giving out SA. But since you updated you will get a pop up asking if you're sure to give out SA.

Smasher
30-04-2008, 10:20
SA being server admin?

BHKai
02-05-2008, 12:58
Yes. Doesn't sunbelt have an IDS?

Comodo firewall has an IDS to help block floods.