If someone got in once he can get in again unless you have closed the 
vulnerability.  Removing his account and changing your password only 
moves him back to where he was a few days ago.  I would do the 
following. In no specific order.

#1. remove his account (you've done this)
#2. Change your password (you've done this) However, I would ensure it 
is at least 8 characters preferably longer make sure to use upper, 
lower, numeric and symbol
#3. Patch the box (OS and Web Server)
#4. If this is hosted somewhere report it
#5. Close unnecessary ports
#6. Run anti-virus and anti-Spyware programs.  Some of them will catch 
root kits and other hacking tools.
#7. If that box is connected to any other boxes I would look at those 
boxes as well. I would also do everything to those boxes that you are 
doing to this box.



 

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
ColdFusion MX7 by AdobeĀ®
Dyncamically transform webcontent into Adobe PDF with new ColdFusion MX7. 
Free Trial. http://www.adobe.com/products/coldfusion

Archive: 
http://www.houseoffusion.com/groups/CF-Community/message.cfm/messageid:229408
Subscription: http://www.houseoffusion.com/groups/CF-Community/subscribe.cfm
Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.5

Reply via email to