Geekzone: technology news, blogs, forums
Guest
Welcome Guest.
You haven't logged in yet. If you don't have an account you can register now.


Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic
1 | 2 

zks

zks

9 posts

Wannabe Geek


  #2242323 21-May-2019 13:16
Send private message

freitasm: Yes but keep other computers off until password changed.

 

 

 

You say computers, do I need to keep my phone/pad off as well? 

 

Thank you!




michaelmurfy
meow
13581 posts

Uber Geek
+1 received by user: 10914

Moderator
ID Verified
Trusted
Lifetime subscriber

  #2242351 21-May-2019 14:11
Send private message

@zks you have a PM - it is important so read it carefully.

 

To everyone else. Once I have permission from the OP and the issue has been mitigated I'll post what has been found.





Michael Murphy | https://murfy.nz
Referral Links: Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


cddt
1972 posts

Uber Geek
+1 received by user: 1905


  #2242375 21-May-2019 15:06
Send private message

michaelmurfy:

@zks you have a PM - it is important so read it carefully.

 

To everyone else. Once I have permission from the OP and the issue has been mitigated I'll post what has been found.

 

 

Curiouser and curiouser!



michaelmurfy
meow
13581 posts

Uber Geek
+1 received by user: 10914

Moderator
ID Verified
Trusted
Lifetime subscriber

  #2242414 21-May-2019 15:11
Send private message

As promised - without disclosing too many details there was a infected cheap Chinese DVR with a set, default root password, and several backdoor user accounts running on the OP's network. There is malware running on it and I suspect it has been doing some nasty things. I am not 100% sure what kind of malware it was running but looks to be linked to the Mirai botnet. It is bad, without authentication I could view the cameras.

 

This is why folks you NEVER port forward to any DVR's especially those purchased off ebay / aliexpress. You're just asking for trouble if you do. More expensive, name brand DVR's have their own secure cloud solution and others should only be accessed via a VPN.

 

@sbiddle posted an excellent blog post here: https://www.geekzone.co.nz/sbiddle/8941





Michael Murphy | https://murfy.nz
Referral Links: Quic Broadband (use R122101E7CV7Q for free setup)

Are you happy with what you get from Geekzone? Please consider supporting us by subscribing.
Opinions are my own and not the views of my employer.


BarTender
3629 posts

Uber Geek
+1 received by user: 2572

ID Verified
Trusted
Lifetime subscriber

  #2242443 21-May-2019 16:02
Send private message

And I wonder how much Geeks on Wheels or similar services may have charged to fix it if they would have even found it.
Standard going rate would be $180-200 per hour if you're lucky to find someone good.

freitasm
BDFL - Memuneh
80658 posts

Uber Geek
+1 received by user: 41072

Administrator
ID Verified
Trusted
Geekzone
Lifetime subscriber

  #2242578 21-May-2019 18:30
Send private message

I am locking because this is now solved and it is not a Bigpipe problem.





Referral links: Quic Broadband (free setup code: R587125ERQ6VE) | Samsung | AliExpress | Wise | Sharesies 

 

Support Geekzone by subscribing (browse ads-free), or making a one-off or recurring donation through PressPatron.

 


1 | 2 
Filter this topic showing only the reply marked as answer View this topic in a long page with up to 500 replies per page Create new topic








Geekzone Live »

Try automatic live updates from Geekzone directly in your browser, without refreshing the page, with Geekzone Live now.



Are you subscribed to our RSS feed? You can download the latest headlines and summaries from our stories directly to your computer or smartphone by using a feed reader.