Results 1 to 2 of 2

Thread: i KNOW i've been hacked, HELP!

  1. #1
    jamnwat Guest

    Default i KNOW i've been hacked, HELP!



    Help, I know I ve been hacked! At home, on a wired DSL LAN (only mine connected) I have no problem. When in a different room, while on the wireless BAM, Mr Hacker (IP address;0.0.0.0 (and soon after; 169.254.110.127)) pops up in my ZAISS alert flag. I tell ZA not to allow entry but it s too late! These two IP addresses appear together MANY time throughout my registry (regedit).

    Now, here s the meat of my problem. I ve used both cpes_clean.exe & the 27 step method (which is how I found Mr Hacker in the first place).When I reinstall ZAISS I m hooked onto my wired DSL. My router comes up as a new connection, of course I give it the Trusted Zone connection but then Mr Hacker soon follows as a New Connection w/IP; 0.0.0.0. At THIS point I d love to put the SOB as Blocked ! But at this junction ZAISS only permits me to put Mr. Hacker in the Internet Zone . Now, trying to eliminate the fact that this SOB is in regard to my wireless while at home, I go to a different location (miles from home) where I know I can trust that wired DSL. I again go through the uninstall/reinstall process with ZAISS. The new trusted connection of course pops up from the other location but then the SOB Mr. Hacker (0.0.0.0) AGAIN also pops up as a New Connection !!!!!!

    HELP?!?!

    Operating System:Windows XP Pro
    Software Version:8.0
    Product Name:ZoneAlarm Internet Security Suite

  2. #2
    naivemelody Guest

    Default Re: 0.0.0.0 is your pc - Calm yourself

    Please click here > http://forums.zonelabs.org/zonelabs/...ssage.id=19195
    and read thru most of the posts; especially by
    Guru Oldsod in this thread,and here &gt; http://forum.zonealarm.org/zonelabs/...ssage.id=20949<hr>I guess your a 'new' user of ZA firewalls.
    <hr>Here is some general info for home networks - click here &gt; http://forums.zonelabs.org/zonelabs/...d=15611#M54949
    &lt; read thru these many articles. Do a &quot;ipconfig&quot;<hr>Click here &gt; http://forum.zonealarm.org/zonelabs/...d=16905#M33265
    <hr>127.0.0.1 should be seen in the Zones as Trusted, not as Blocked or as Internet.
    This is the general advice....

    Make sure your DNS and DHCP server IP's are in your Firewall's Trusted zone. Finding DNS and DCHP servers, etc

    1. Go to Run and type in command and hit 'ok', and in the command then type in ipconfig /all then press the enter key. In the returned data list will be a line DNS and DHCP Servers with the IP address(s) listed out to the side. Make sure there is a space between the ipconfig and the /all, and the font is the same (no capitals).
    2. In ZA on your machine on the Firewall, open the Zones tab, click Add and then select IP Address. Make sure the Zone is set to Trusted. Add the DNS IP(s) .
    3. Click OK and Apply. Then do the same for the DHCP server.
    4. The localhost (127.0.0.1) must be listed as Trusted.
    5. The Generic Host Process (svchost.exe) as seen in the Zone Alarm's Program's list must have server rights for the Trusted Zone.
    Plus it must have both Trusted and Internet Access.

    Extra help is found at Guru Hoov site for the DNS/DHCP.







    Message Edited by NaiveMelody on 05-13-2009 09:01 PM

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •