How did this guy hack my system?

Page 2 - Seeking answers? Join the Tom's Hardware community: where nearly two million members share solutions and discuss the latest tech.

Sharks445

Reputable
Mar 10, 2014
168
0
4,690
So I run a web server, so my computer stays on all night. I also have RDP (remote desktop) on as well. So one day I wake up and see that some dude from Africa created a new account on my computer through RDP. I only had a guest account on, and my main one has a password, so I was wondering how the * did he create a new account? It gets worse. The new account he created was ADMIN. This dude made himself admin on my PC. So I figured maybe he cracked my password. So that day I deleted his account, turned off guest account, and changed my password. The next day I see this dude created a new admin account AGAIN. Unless he has some logging software, (which he doesn't on my PC) I am still trying to figure out how the * someone achieved a huge feat in hacking. Anyone got any ideas?
 
Solution
There are several programs that will allow brute-force password attacks on Windows systems. Opening RDP to the Internet is the equivalent of leaving your front door open and inviting hackers to sit down at your computer and try to log on. Actually, it's worse than that because it's easier to run a brute-force attack over a network that sitting at a keyboad and doing the same thing.

I'd say that your password isn't complicated enough and your Internet security is non-existant. And, just as an aside, how can you say that the hacker hasn't installed logging software on your computer? It sounds as if he's a lot more astute when it comes to low-level attacks than you are, and he has had unrestricted access to your computer.

I would format...
There is a possiblility that your password Isn't strong enough but still... Brute forcing takes a while. The people that get passwords in a couple minutes are EXTREMELY luckey if they cracked a complicated password. Brute forcing can take months to accomplish. If I would guess what he did is, you have or had a key logger on your system. That's how he got your passwords. Key loggers are EXTREMELY easy to make. It can probly take a noob 30 mins in c++. And there is the possibility that he is a extremely intelligent hacker. But I don't think someone like that would be messing around with RDP and trying to hack you.

I hope this answered all of your questions!