Well, I guess because FTP is about one of the biggest security holes and
extremely easy to crack into. It wouldn't take much to have some one sitting
with a sniffer pointed to your box, and catch an authentication packet and
use that to get in. Have you hardened your IIS (I am assuming that is what
you were running) with the myriad of patches out at this point? Unless you
work at making your IIS setup secure, it is very easy, and probably the most
documented, to crack and take over.

Have you looked into your Event Logs to see what and when this may have
happened? This may also give some clue as to how.


Regards,

-Don

 You cannot save someone from a destiny they don't wish to avoid.
-----------------------------------------------------------
Don Wolff, Technology Coordinator
Phoenix-Talent School District http://www.phoenix.12.or.us
mailto:[EMAIL PROTECTED]
http://help.phoenix.k12.or.us
541.535.0200- Office
541.621.4717- Mobile
541.535.7552- FAX


-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Tim
Sent: Tuesday, December 11, 2001 2:04 PM
To: Imail
Subject: [IMail Forum] FTP server hijacked


Someone has hacked my Imail server that had FTP running on it. Now there are
directories on the drive that can not be removed except by anonymous user ?

Anyone know how they got to write that on my ftp if it was set to deny
anonymous connections ?

Tim






_______________________________________________________________
Sent using Novelty Mail the FREE EMAIL SERVICE. Click here
http://noveltymail.com to get your own free email using this or ANY of our
fun domain names.

Please visit http://www.ipswitch.com/support/mailing-lists.html
to be removed from this list.

An Archive of this list is available at:
http://www.mail-archive.com/imail_forum%40list.ipswitch.com/


Please visit http://www.ipswitch.com/support/mailing-lists.html 
to be removed from this list.

An Archive of this list is available at:
http://www.mail-archive.com/imail_forum%40list.ipswitch.com/

Reply via email to