LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - General
User Name
Password
Linux - General This Linux forum is for general Linux questions and discussion.
If it is Linux Related and doesn't seem to fit in any other forum then this is the place.

Notices


Reply
  Search this Thread
Old 03-07-2004, 12:36 AM   #1
TagnikZur
LQ Newbie
 
Registered: Mar 2004
Location: New Zealand
Distribution: Linux Redhat 9
Posts: 11

Rep: Reputation: 0
help much required against hacker


i'm not sure about being allowed to ask or post this stuff here, but here goes.

My friend has an issue with a hacker, some files (very illegal) were uploaded to his computer with quotes to sell them, the hacker (we both know him IRL) sent the directory off to the cops, and is filing a case against him, which could have him put in prison.

I need to know how to access his computer (yeah hacking) to get some files off his computer that can prove what was REALLY done.

thanks for help in advance, will be very much appreciated indeed.
 
Old 03-07-2004, 12:41 AM   #2
arrruken
Member
 
Registered: Apr 2003
Distribution: gentoo
Posts: 238

Rep: Reputation: 32
If the cops havent confiscated the pc, then get rid of the evidence. As far as hacking his pc to locate some stuff, its not like anyone could tell you a specific "do this", it all depends on the situation, and in alot of cases, would be alot harder than you think, especially if he has any clue about security. Also, its not like the police(or whoever), are just gonna take someone's worf for something and put you in jail, explain the situation, we do have a decent legal system.
 
Old 03-07-2004, 12:55 AM   #3
TagnikZur
LQ Newbie
 
Registered: Mar 2004
Location: New Zealand
Distribution: Linux Redhat 9
Posts: 11

Original Poster
Rep: Reputation: 0
sadly it is a lot more complicated than that, they HAVE the evidence, and about security...this guy is someone who ran across linux with some whack knowledge from a website... "Hey! lets try this... .. .. .. it worked o,O;;...hrm...firewall, rings a bell..."...and yeah, he uploaded illegal files, sent them to the cops. The legal system here in new zealand isn't the best, i'll say that. The files are well, child porn...if i can access his computer from mine using a bash shell in linux redhat 9 i can more than likely prove what really happened.

Quote:
its not like anyone could tell you a specific "do this"
That's true, very true... --> newbiest question possible "How do i hack?"...Didn't mean it to come off like that, theres so much software and ways and etc. etc.

What i need is a way i can get into his computer and get a couple of files i require. any suggestions or help?

cheers,
 
Old 03-07-2004, 05:26 AM   #4
lone_nut
Member
 
Registered: Dec 2003
Location: Denmark
Distribution: Mandrake
Posts: 179

Rep: Reputation: 30
Well this may be stupid but why not talk to the guy IRL, if the cops have confiscated the computer, I highly dought that they have it pluged online. If they have just copied it, you should really talk to the guy
 
Old 03-07-2004, 02:54 PM   #5
TigerOC
Senior Member
 
Registered: Jan 2003
Location: Devon, UK
Distribution: Debian Etc/kernel 2.6.18-4K7
Posts: 2,380

Rep: Reputation: 49
You don't say specifically but this sounds like a webserver that got hacked. If the webserver is properly constructed and maintained then there should be a log of who did what, when and even a trail of where he entered from. Normally the entry can be tracked back to a specific IP address. This correlates with the date/time stamp on whne the files were created on the system.
 
Old 03-07-2004, 07:36 PM   #6
TagnikZur
LQ Newbie
 
Registered: Mar 2004
Location: New Zealand
Distribution: Linux Redhat 9
Posts: 11

Original Poster
Rep: Reputation: 0
this is getting kind of complicated lol...my friend's computer who the hacker hit got confiscated, i need files from the hacker's computer who was not confiscated.
 
Old 03-07-2004, 09:38 PM   #7
watashiwaotaku7
Member
 
Registered: Oct 2002
Location: wisconsin -- The Badger state
Distribution: gentoo
Posts: 654

Rep: Reputation: 30
explain to the police, ask them to get a computer expert to look at logs especially, if the hacker is not good, then check the bash history hopefully this will shed light on where the files came from also explain why the hacker may have something against your friend provide them with ANY and ALL data that has any reasonable connection to your friends web habits and incoming/outgoing webtraffick the police will not have enough evidence to search his home/computer based on your word alone, however with enough evidence from your friends logs they may be able to do something and you hacking the other guys computer is not going to help anything only make matters worse, then if you "prove" he has this the police will assume you put it there besides, I doubt hes kept such data around long probly was gone before he called the cops
 
Old 03-08-2004, 05:26 AM   #8
Chu
Member
 
Registered: Nov 2003
Location: Australia
Distribution: Slackware 9.1
Posts: 166

Rep: Reputation: 30
Check the history of the files.
Well, tell the cops to, maybe tell the cops you know how to check the history of the files, and just swang a looksies at when the files were created.
Check a connection log (Although, I don't know how far back they track, and I don't know when this happened.) if it happened < a month or so, I'm sure the logs would still show when the hacker connected, through what terminal, IP Address, what he did (If it shows command logs, I think it does?) etc.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Hacker Secure ! FreeFox Linux - Security 2 09-02-2005 10:10 AM
becoming a kernel hacker skywalker27182 Programming 4 08-02-2004 11:01 PM
Catching a Hacker... Shr00mBoXx Linux - Security 14 06-30-2004 09:59 PM
Hacker proof Joey.Dale Linux - General 2 08-11-2003 08:19 PM
Hacker Forums Volcom Slackware 1 05-26-2003 05:18 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - General

All times are GMT -5. The time now is 10:45 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration