If someone got in once he can get in again unless you have closed the vulnerability. Removing his account and changing your password only moves him back to where he was a few days ago. I would do the following. In no specific order.
#1. remove his account (you've done this) #2. Change your password (you've done this) However, I would ensure it is at least 8 characters preferably longer make sure to use upper, lower, numeric and symbol #3. Patch the box (OS and Web Server) #4. If this is hosted somewhere report it #5. Close unnecessary ports #6. Run anti-virus and anti-Spyware programs. Some of them will catch root kits and other hacking tools. #7. If that box is connected to any other boxes I would look at those boxes as well. I would also do everything to those boxes that you are doing to this box. ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| ColdFusion MX7 by AdobeĀ® Dyncamically transform webcontent into Adobe PDF with new ColdFusion MX7. Free Trial. http://www.adobe.com/products/coldfusion Archive: http://www.houseoffusion.com/groups/CF-Community/message.cfm/messageid:229408 Subscription: http://www.houseoffusion.com/groups/CF-Community/subscribe.cfm Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.5
