Occasional thoughts and deeds of an Engineer
RSS icon Email icon Home icon
  • Posted on May 3rd, 2014 cwmoore No comments

    I have been fighting a hacking issue at my church. At the same time I have been adding bandwidth and revamping some of the hardware.  Evidently, I have stepped on so toes of (1) malware that is installed on the computer that AVG does recognize, (2) someone behind the firewall deliberately attacking the system or (3) someone really good in China that wants into a machinehacked1 that contains absolutely nothing of use to them.  Today, I went to the church and found it hacked again with malware installed – some sort of data miner. I went to the uninstall programs and apparently eliminated the threat (This I really do not believe) by uninstalling it.  Then scanned with AVG and reviewed scan and settings. Since I did not have the scan on boot option checked the scan list and found a weird sequence initiated at 10:36 today.. All other scns were where I set them at the wee morning hours: this makes me think that the threat got to AVG. It all started on Friday when I discovered the IT computer totally locked up and sort of trashed.  However, this is not totally true as I think it really started a week earlier when I set in place some draconian bandwidth restriction policies. Someone somewhere did not like that!  Since then we have only been tightening up.  What is happening is probably beyond me and my capabilities  but I guess we need a managed switch.  It is really impossible to implement a complete computer wipe and rebuild as we have a LOT of volunteers who use their own machines.  Couple that with the smartphones and tablets and I think you get the picture: Layer 2 and 3 management on the front end of the LAN. I wish I was gifted with the abilities of the whiz kids in the movies who solve issues like this in minutes 🙂