Почему не работал 4chan

Висевший почти неделю 4chan, похоже, наконец поднялся и заработал. Тем временем стали появляться версии того, что же с ним происходило на прошлой неделе. Достоверность этих версий непонятна, но что уж есть.

Злодей, организовавшего DDOS, якобы известен в узких кругах под ником Pacifico (анонимусов лучше не злить: они уже вычислили его реальное имя и адрес и отыскали его фотографию). Он некоторым образом связан с чан-сообществами. Атаке подвергался не только 4chan, но и другие сайты, включая даже наш "двач", но остальные пришли в себя скорее.

Основной уликой, похоже, служит запись чата, в котором pacifico организовывал атаку. Под катом цитируется самый членораздельный момент. Некоторую информацию можно выудить также в Encyclopedia Dramatica (поверить не могу, что я упомянул её в одном предложении со словом "информация").

Впрочем, в данный момент куда актуальнее проблемы с 2ch.ru, который, похоже, неделю назад был заблокирован на некоторых провайдерах, включая "Стрим". Хотелось бы понять, что именно произошло. Если у вас не открывается "двач", напишите что ли в комментах, какой у вас провайдер, и, если возможно, скопируйте traceroute 2ch.ru.


Обещанный фрагмент чата.

Jul 21 22:16:02 [pacifico] Many of you may be aware of the current storm looming in the distance. The general chan sphere is being thrown increasingly into chaos by the spambots of Anontalk. 12chan is being spammed to hell. 420 /b/ is a radioactive zone. 99chan is down. 7chan? Have you seen their front page? They told their users to peacefully, and LEGALLY report anontalk.com to their isp. As of 11 pm Eastern Standard Time, pings to 7chan.org have ceased to resolve.

To put it simply, our usually peaceful coexistence has been threatened by a hostile and outside force that is hellbent on our mutual destruction. If there was any shred of a doubt, it should be gone now. We knew about this months ago, and yet nothing was done. And by our inaction we have allowed the problem to grow and grow until it has become something that not even the full combined force of the chans can keep at bay.

The hordes of /b/ raided anontalk a few days ago, in the thousands. Flooding, spamming, all a just recompense for the months of faggotry endured at the hands of anontalk. But nothing prepared them for what awaited, not even Ackbar could have foreseen the trap we had stumbled into. Anontalk.com was the most exploit ridden, malware spewing website that I have seen for as long as I can remember. The effects were swift and brutal. Nothing stood in their way, whether it be firefox, linux, peerguardian or whatever the skiddies used to cover their tracks.

It had come down to the final showdown, and all our overwhelming numbers? they meant nothing. The newfags only served to add minions to the anontalk swarm, bots which were used to crush down 4chan in a fiery orgy of DDOS. Those who escaped fled, stricken with terror, shouting and spamming nonsensically for eyes and ears which remained closed. Few cared or bothered to read the dire warnings, until it was too late.

The worm which they loaded into the newfags computers is a versatile sonuvabitch. It spreads, copies itself, and randomizes its core processes so that it can change and evade the most sophisticated defense mechanisms in real time, all without a central server update. It sends itself through AIM, skype, irc, hamachi, etc. and anyone who has had contact with a victim is vulnerable. It completely takes control of a compromised system, and automatically scans the ports of its next targets, looking, just looking for a way in.

What you can do: Well what can you do, really I even don?t know what to do anymore. Everyone is totally disorganized. Ill try and briefly outline what I know.

THIS IS NOT A RAID, we have tried that, the results are well known. Right now we are not seeking numbers, because numbers work against us. What we need are people who actually know what they are doing to meet on irc @ irc://irc.partyvan.fm/anontalkraid Quality, not quantity.

DDOS seems to be the only thing to keep them down without an hero in the process. BUT BE WARNED, they change the dns A LOT and redirect requests to other sites and servers (ours). You absolutely must be on irc to have realtime updates of the backend ip, or you will end up ddosing chans. This is not something that can simply be left on all night, you have to literally watch it like a hawk.

Keep it a secret, 7chan fucked up by publicly showing their support for the fight by telling people what to do on their front page, now the cat is out of the bag. Keep things low key, don?t mention where you come from. The last thing I intended was to actually get you guys involved over your heads in this.

Темы: , ,

Олег Парамонов - 28 июля 2008   

Комментарии

so_slow - 28.07.2008 18:29 (ссылка)

>Если у вас не открывается “двач”, напишите что ли в комментах, какой у вас провайдер

Westcall, и тоже не могу зайти на двaч

anonymous-archivist - 28.07.2008 19:18 (ссылка)

$ traceroute 2ch.ru
traceroute to 2ch.ru (213.148.6.66), 64 hops max, 40 byte packets
1 192.168.1.1 (192.168.1.1) 2.655 ms 2.218 ms 2.129 ms
2 ppp91-77-92-1.pppoe.mtu-net.ru (91.77.92.1) 18.789 ms 16.791 ms 17.621 ms
3 ss-cr02-po1-53.msk.stream-internet.net (195.34.59.249) 17.454 ms * 22.144 ms
4 ss-cr02-po1-53.msk.stream-internet.net (195.34.59.249) 25.346 ms 20.477 ms 23.030 ms
5 * * *
6 * * *
7 * * *
8 * * *
и так далее сколько угодно.

anonym - 04.10.2008 22:21 (ссылка)

стрим, заблокирован

anon - 06.10.2008 17:26 (ссылка)

traceroute 2ch.ru
traceroute to 2ch.ru (213.148.6.66), 30 hops max, 40 byte packets
1 memsys.ru (172.27.27.1) 0.291 ms 0.271 ms 0.241 ms
2 main.volina.ru (213.85.145.1) 1.809 ms 3.454 ms 1.949 ms
3 cnt33-atm2-0-537-gw.cnt.ru (213.85.171.129) 13.741 ms 5.045 ms 7.914 ms
4 CNT1-gi-3-2.cnt.ru (212.15.122.3) 6.478 ms 5.480 ms 5.555 ms
5 M9-IX.comintern.ru (193.232.244.80) 6.228 ms 7.533 ms 4.966 ms
6 * * *
7 * * *

Anonymous - 16.04.2010 13:43 (ссылка)

Оставить комментарий

Загрузить другой аватар для комментариев можно на сайте gravatar.com. Укажите там тот же электронный адрес, который используете здесь.