Forum Settings
       
« Previous 1 2
Reply To Thread

Can you put an end to this fellow?Follow

#1 Aug 31 2004 at 1:00 AM Rating: Decent
**
746 posts
http://ffxi.allakhazam.com/forum.html?forum=10&mid=1093929545378972215&num=10

http://ffxi.allakhazam.com/forum.html?forum=10&mid=109393138646504959&num=3

Yes, he got Sub-Default, but this is like at least the fifth thread I've seen by this guy.

I don't care either way, it allows me to make lame jokes in every post, but really....

EDIT: Another one.

http://ffxi.allakhazam.com/forum.html?forum=10&mid=109393260459169461&num=1

EDIT: AAaaand, another

http://ffxi.allakhazam.com/forum.html?forum=10&mid=109393260459169461&num=8



Edited, Tue Aug 31 02:14:49 2004 by johnnyhammer

Edited, Tue Aug 31 02:26:38 2004 by johnnyhammer
#2 Aug 31 2004 at 1:20 AM Rating: Good
Tracer Bullet
*****
12,636 posts

It's more like the 30th post by that guy.

The IP is different every time though, or so I hear.

#3 Aug 31 2004 at 1:24 AM Rating: Decent
**
746 posts
Quote:
It's more like the 30th post by that guy.

The IP is different every time though, or so I hear.


Fair enough.

But how is that possible?

School computers, or something?

I'm not tech savvy at all, I dunno.
#4 Aug 31 2004 at 1:27 AM Rating: Good
Dynamic IP more likely. Dial-up connections don't have static IP addresses, so every time someone connects to the internet via a dial-up connection they have a new, different IP address. Unfortunately, the only way to block the moron if that's what he's doing would be to contact his ISP and explain how he's using their service. Most ISPs freak out if they're informed that someone is using their service to spam, so that would take care of it VERY fast.
#5 Aug 31 2004 at 1:28 AM Rating: Excellent
Code Monkey
Avatar
****
7,476 posts
I'm seriously wondering how he's doing it. If he's going around to public computers in libraries and posting it or something

one is on gblx.net (219.134.28.150)
one is off of p-15-0-r2-c-gdgz-1.cn.net (219.138.32.37)
one is off of 2p0-gsr2-fz1.cncnet.net (220.250.13.234)

the traceroutes are going all over the world on those

I'm thinking I'm going to ban some of the phrases in his post, I'll give that a shot
____________________________
Do what now?
#6 Aug 31 2004 at 1:30 AM Rating: Excellent
Code Monkey
Avatar
****
7,476 posts
ok, good

Edited, Tue Aug 31 02:30:23 2004 by Danalog
____________________________
Do what now?
#7 Aug 31 2004 at 1:31 AM Rating: Excellent
Code Monkey
Avatar
****
7,476 posts
I've now banned one of the phrases he uses in his formletter post. I'll leave it to him to figure out which one.
____________________________
Do what now?
#8 Aug 31 2004 at 1:34 AM Rating: Decent
**
746 posts
Damn.

I wish I were smart like you guys.
#9 Aug 31 2004 at 1:35 AM Rating: Excellent
Code Monkey
Avatar
****
7,476 posts
tell me if he posts any more
____________________________
Do what now?
#10 Aug 31 2004 at 1:41 AM Rating: Good
Dana, I am on a quest. A quest to get you to 5.0 base karma. It WILL happen. You have been warned....

As for traceroutes, he's either (a) bouncing off other people's connections using proxy relays or (b) using a VPN and logging in to other computers remotely. Or I guess (c) he's a trendy jet-setter who travels all over the world sampling the finest net cafés on earth. I'm gonna go with (a) or (b) I think.
#11 Aug 31 2004 at 1:44 AM Rating: Excellent
Code Monkey
Avatar
****
7,476 posts
I also set it to trigger removal of entire message if that same phrase was found
____________________________
Do what now?
#12 Aug 31 2004 at 1:46 AM Rating: Excellent
Code Monkey
Avatar
****
7,476 posts
VPN sounds plausable

I'm almost paranoid to wonder if it's a virus, too. Some poor fool downloads an "adena cheat", and it posts something to our page from his PC =P
____________________________
Do what now?
#13 Aug 31 2004 at 2:08 AM Rating: Good
The only trouble with the VPN theory is that other people would have to be "in on it" too, all over the world, to set up a VPN for him to use. As for viruses, that's a good point. There are a number of viruses out there that simply drill a hole in the security of the machine. Then, a "hacker" runs a simple program searching for that virus's profile. Once he's found it, he can hijack the person's internet connection via the virus exploit, and send his data through their connection.

With some viruses the rat-******* can get into your operating system. With others he's not really using their computer, he's really just "piggybacking" whatever he's doing through their pipeline. Sub7, Codered and Codeblue viruses (among others) all do that, so all he'd need was a program to go looking machines infected with those viruses and he's in. It's a pain in the ***, I know. Kids, this is why you get an antivirus program and keep it updated regularly. >_<
#14 Aug 31 2004 at 2:12 AM Rating: Excellent
Code Monkey
Avatar
****
7,476 posts
Yeah, that was my thought, a simple generic worm program plus a script to make a hotmail account, allakhazam account, and post a form letter to a random thread, probably not outside the realm of the possible
____________________________
Do what now?
#15 Aug 31 2004 at 2:18 AM Rating: Good
Well, last I checked hotmail had one of those "Type the word you see here in the following box" dealies. That's usually good for screening out all but the best scripts. But given the sporadic nature of his posts, it's entirely possible he's just signing up for these hotmail accounts by hand. Only the most recent one or two have given an email address "In case you can't read the link above". In fact, Alla might want to consider going to one of the "type the word" setups for registration too. At the very least, it'd make him go through the process by hand and maybe he'd get bored and realise he isn't wanted here.

Oh, and I've got you up to 4.93. Bwahaha!! Smiley: wink
#16 Aug 31 2004 at 2:21 AM Rating: Good
As a side note... I wonder if the threads he's posting in really are random? It doesn't seem to be the case, since they've been mainly going to very populated forums. He might have a list of key forums to advertise in, since it wouldn't do him a whole lot of good to go advertising it in the Asylum or in the "Windurstian Tea Leaves" item board or whatever. Of course it's all just speculation, but if you can figure out how he's doing it you can (hopefully) shut him down for good.
#17 Aug 31 2004 at 2:24 AM Rating: Excellent
Code Monkey
Avatar
****
7,476 posts
he's advertised in the Asylum though

I just find it hilarious that he's barely hitting the L2 forum with all the L2 spam
____________________________
Do what now?
#18REDACTED, Posted: Aug 31 2004 at 8:40 AM, Rating: Sub-Default, (Expand Post) Drills hole!!! Hehehe... omg... Ok, sound really intelligent to the layman! Just besure to close ALL UNSED PORTS, vola, no holes you can drill, sorry. As for the hacker searching for that virus's profile!?!?! Why!?!? Didn't he just use his own virus to DRILL that hole?!?!? Heheh, c'mon....
#19 Aug 31 2004 at 1:41 PM Rating: Decent
****
6,947 posts
Captain Azz likes to make fun of people for "trying to sound smart", but his own flubs belie his ignorance;

Quote:
I use dynamic ISP


wow, I've worked in IT for 8 years, I have A+, Net+, and MCSA, and I still dunno what a dynamic ISP is.


Quote:
it would be damm near impossible to stop me! I can use proxy servers, I use dynamic ISP, I can use more than 1 ISP, etc... You could not stop me if I want on here!



Its also an established human fact that the more vociferously a person boasts about their "prowess" (particularly in the world of the 1337 h4x0r), the more impotent they actually tend to be.
The degree of your abilities is very likely an inverse proportion to how much you claim you can do.

You probably still think Sub7 is the bomb.

People with real power dont have any need to loudly proclaim it. They just bring that power to bear and leave people shaking their heads in astonishment at the aftermath.

But then, you aren't a hacker, are you? You're just a self-important teenaged spammer. ph33r.

Edited, Tue Aug 31 14:43:50 2004 by Tenmiles
____________________________
  • Tenmiles
  • Monk
  • (Lakshmi)

  • ______________
    Retired
    #20 Aug 31 2004 at 1:51 PM Rating: Excellent
    Code Monkey
    Avatar
    ****
    7,476 posts
    he's just a sockpuppet, ignore him
    ____________________________
    Do what now?
    #21 Aug 31 2004 at 2:21 PM Rating: Good
    Quote:
    Easy, several ways to achieve this, if ALLA choose to ban me, it would be damm near impossible to stop me! I can use proxy servers, I use dynamic ISP, I can use more than 1 ISP, etc... You could not stop me if I want on here!


    hehehe, want to let him prove himself dana? Smiley: tongue
    #22 Aug 31 2004 at 2:30 PM Rating: Excellent
    Code Monkey
    Avatar
    ****
    7,476 posts
    not really, he's not worth the effort, even if he's making it all up
    ____________________________
    Do what now?
    #23 Aug 31 2004 at 3:24 PM Rating: Good
    CaptainAzzhole wrote:
    Quote:
    As for viruses, that's a good point. There are a number of viruses out there that simply drill a hole in the security of the machine. Then, a "hacker" runs a simple program searching for that virus's profile. Once he's found it, he can hijack the person's internet connection via the virus exploit, and send his data through their connection.


    Drills hole!!! Hehehe... omg... Ok, sound really intelligent to the layman! Just besure to close ALL UNSED PORTS, vola, no holes you can drill, sorry. As for the hacker searching for that virus's profile!?!?! Why!?!? Didn't he just use his own virus to DRILL that hole?!?!? Heheh, c'mon....


    Why would he? There are already viruses in circulation that achieve the effect he'd need. Why would he go write a new virus when it would take a while to propagate itself, when he can just search for machines infected by a pre-existing virus and exploit them? I know you're just a sock-puppet and an idiot, but if you're going to talk the big words at least TRY to get them right.
    #24 Sep 01 2004 at 11:17 AM Rating: Decent
    ***
    3,118 posts
    Quote:
    I'm seriously wondering how he's doing it. If he's going around to public computers in libraries and posting it or something

    The number of ways to bounce IPs is astounding, any of the following could be used: Jumping around public networks(internet cafes, hotel lobbies), hijacking private wireless networks, jacking routers and forcing routes, spoofing IPs within public networks, pushing the requests through proxy, etc.
    And yes, a virus could do this easily.
    Quote:
    one is on gblx.net (219.134.28.150)
    one is off of p-15-0-r2-c-gdgz-1.cn.net (219.138.32.37)
    one is off of 2p0-gsr2-fz1.cncnet.net (220.250.13.234)

    It would appear that all of the above addresses are under APNIC jurisdiction.
    Quote:
    Quote:
    --------------------------------------------------------------------------------
    Dynamic IP more likely. Dial-up connections don't have static IP addresses, so every time someone connects to the internet via a dial-up connection they have a new, different IP address. Unfortunately, the only way to block the moron if that's what he's doing would be to contact his ISP and explain how he's using their service. Most ISPs freak out if they're informed that someone is using their service to spam, so that would take care of it VERY fast.
    --------------------------------------------------------------------------------



    ANd now that ISP 101 class is over I would like to say... BS!!
    Yes, BS! He is not spamming in the classic sense! No, so far this ISP-****-wannabie does not know what he talking about!

    sorry, the guys a douchebag, but he's right on this one. Most ISPs wouldn't do much about this. Even if he was using this method, the volume and and potential damage done wouldn't prompt them to move too fast.
    Quote:
    You probably still think Sub7 is the bomb.
    Sub7 is the bomb.

    Dynamic ISP: Non-stationary ISP, mobile, used to provide dynamic IP access via remote connections. Not very common but they do exist. Think trade shows or festivals.....yeah, i'm just BSin ya.

    Here is the info for one of the companies that is getting bounced off of or has someone inside their network.

    Domain Name:cncnet.net


    Registrant:
    China NetCom Corp.





    Administrative Contact:
    Chang, Jie
    China NetCom Corp.


    China
    tel:
    fax:
    changjie@CHINA-NETCOM.COM

    Technical Contact:





    tel: ¾¿>
    fax: ¿9 , L¾¿¿[ (X¾¿ 
    ¿

    Billing Contact:
    ou hui
    ou hui
    No.6 Southern Road capital Gym.BeiJing
    beijing beijing 100083
    CN
    tel: 86 10 68492333
    fax: 86 10 68492008
    bill@chinadns.com

    Registration Date: 2000-04-21
    Update Date: 2004-02-03
    Expiration Date: 2005-04-21

    Primary DNS: bj-dns.cncnet.net
    Secondary DNS: sh-dns.cncnet.net

    Edited, Wed Sep 1 12:22:09 2004 by Jacobsdeception
    #25 Sep 01 2004 at 4:18 PM Rating: Default
    Quote:
    wow, I've worked in IT for 8 years, I have A+, Net+, and MCSA, and I still dunno what a dynamic ISP is.


    Correct.

    My home ISP provider provides me with a dynamic ISP everytime I log on. And, if I wish, I can visit this site thru several proxy servers at my disposal.

    But, to repeat, yes, you are correct, you do not know what a dynamic ISP is! Eight years as a IT. Now, all you need is to go to school and learn about being a IT! Well, sonny, I've been an IT , or the equiv, for twice that time! Have mommy wipe your butt now! Eight year as an IT don't mean diddly!

    Quote:
    I know you're just a sock-puppet and an idiot, but if you're going to talk the big words at least TRY to get them right.


    Hehe, what big words? I used no big words. I used very small words just so you could understand them!!!

    Quote:
    hehehe, want to let him prove himself dana?


    Yes, prove me! Ban me. Why? Because I dared have view different from you and your suckups! How dare one of your users to think you wrong on something!

    Danalog, About the sockpuppet remark....
    Takes sockpuppet to know one huh? I'll take your advice and ignore you! Wuss! Now, if it makes you feel better, because you can, just ban me! That will be the only way you can punish me, sure as hell won't be done on an intellectual footing!

    Quote:
    sorry, the guys a douchebag,


    Again, why, because I said the Emperor has no cloths! And I was right and they were wrong! Because I was a rat amoung lemmings!

    Hehe... I'm luv'in it!
    #26 Sep 01 2004 at 4:29 PM Rating: Excellent
    Code Monkey
    Avatar
    ****
    7,476 posts
    CaptainAzzhole wrote:
    Danalog, About the sockpuppet remark....
    Takes sockpuppet to know one huh? I'll take your advice and ignore you! Wuss! Now, if it makes you feel better, because you can, just ban me! That will be the only way you can punish me, sure as hell won't be done on an intellectual footing!


    265677 singforu 2.63 Aug 25th, 2004 - 11:20 AM 1093369188817684154
    265677 singforu 2.63 Aug 25th, 2004 - 11:30 AM 1093371435818655198
    265677 singforu 2.63 Aug 25th, 2004 - 4:24 PM 1093021311328715266
    265677 singforu 2.63 Aug 25th, 2004 - 4:58 PM 0
    399600 CaptainAzzhole 2.33 Aug 27th, 2004 - 12:03 PM 1093572006963836394
    399600 CaptainAzzhole 2.80 Aug 27th, 2004 - 12:15 PM 1093616490144318462
    265677 singforu 2.64 Aug 30th, 2004 - 10:55 AM 109346759076486722
    265677 singforu 2.63 Aug 30th, 2004 - 2:18 PM 1093750041210355402
    265677 singforu 2.63 Aug 30th, 2004 - 2:23 PM 109346759076486722
    399600 CaptainAzzhole 2.00 Aug 30th, 2004 - 4:47 PM 1093880714351491492
    399600 CaptainAzzhole 3.00 Aug 30th, 2004 - 4:57 PM 1093877626346012948
    399600 CaptainAzzhole 1.50 Aug 31st, 2004 - 9:40 AM 1093931986465071807
    399600 CaptainAzzhole 3.00 Sep 1st, 2004 - 5:18 PM 1093931986465071807
    ____________________________
    Do what now?
    « Previous 1 2
    Reply To Thread

    Colors Smileys Quote OriginalQuote Checked Help

     

    Recent Visitors: 197 All times are in CST
    Anonymous Guests (197)