How to stop zF RedZone - Page 2 - SLUniverse Forums
Navigation » SLUniverse Forums > Virtual World Discussion > General SL Discussion » How to stop zF RedZone


General SL Discussion Discuss topics related to Second Life

 
Sponsor:
PDS HomeSecurity Orb
Reply
 
LinkBack Thread Tools Display Modes
Old 02-14-2011, 10:17 AM   #26 (permalink)
Senior Member

*SLU Supporter*
...
 
Join Date: Jul 2007
Posts: 15,774

Awards: 1
Guinea Pig 
Woah, I did not notice the hamlinpro.com domain before. It was not associated with that server the last time I checked. What he's selling provided quite a WTF moment too.

Quote:
Hello.
My name is John and this is my website.
I am not a webmaster pro or anything so I hired Insanity Productions LLC to make this for me because I can. You found this website because you know what else I can do, and that is PLAY BLACKJACK! Long story short I was a BlackJack Casino dealer for years. I learned how players play, how the Casino plays and figured out how to gain a strategic advantage over the house.
I quit, started playing for myself, and made more than enough to retire in 2008. Now I just enjoy life doing whatever hobby I feel like, including making my own videos, living life...
...and selling a data harvesting spyware device in Second Life at $20USD a pop, even though I totally don't need the money!

It's definitely him too. The email linked to the domain name confirms that.
Walker is offline   Reply With Quote
1 User Said Thanks:
1 User Likes This:
Old 02-14-2011, 10:19 AM   #27 (permalink)
Is eating your shoes.
 
Naiki's Avatar
Nom
 
Join Date: Jun 2009
Posts: 1,134
Business: Blue Moons
Quote:
Originally Posted by Couldbe Yue View Post
Is this anything like when guys tell me that this |---------------------------------------| is 6 inches?


To my missus who reads this forum, that is infact 12 inches, you have you screen resolution set incorrectly or something.

Naiki is offline   Reply With Quote
Old 02-14-2011, 10:24 AM   #28 (permalink)
The Rainbow Girl
 
Boy Lane's Avatar
One last Latex Doll.
 
Join Date: Dec 2008
Location: The other end of your world...
Posts: 2,664
My Mood:
SL Join Date: Back in 2006
Client: Rainbow :)
Send a message via Yahoo to Boy Lane
Quote:
Originally Posted by Sione View Post
I hope he does. I hope he spends $100's buying up domain names before LL shut him down.
Seems he's on it
hamlinpro.com Creation Date: 06-Feb-2011
__________________
The Rainbow Girl
Be plurked: http://plurk.com/BoyLane
Boy Lane is offline   Reply With Quote
2 Users Laughed:
Old 02-14-2011, 10:25 AM   #29 (permalink)
Senior Member

*SLU Supporter*
...
 
Join Date: Jul 2007
Posts: 15,774

Awards: 1
Guinea Pig 
Jesus Christ, this guy is so bad at protecting his own personal data that I have zero confidence the data he's collecting is well secured.
Walker is offline   Reply With Quote
1 User Laughed:
Old 02-14-2011, 10:25 AM   #30 (permalink)
Senior Member
 
Sione's Avatar
see-oh-neh
 
Join Date: Sep 2010
Location: UK
Posts: 3,080

Awards: 1
Thank You 
Quote:
Originally Posted by Walker View Post
Woah, I did not notice the hamlinpro.com domain before. It was not associated with that server the last time I checked. What he's selling provided quite a WTF moment too.



...and selling a data harvesting spyware device in Second Life at $20USD a pop, even though I totally don't need the money!

It's definitely him too. The email linked to the domain name confirms that.
$300 DVD

Well John Hamlin how does it feel to be spied on?
Sione is offline   Reply With Quote
Old 02-14-2011, 10:34 AM   #31 (permalink)
Elysium Hynes is Typing..

*SLU Supporter*
 
Elysium Hynes's Avatar
My animal spirit is the lolcat
 
Join Date: May 2010
Location: Atlantic
Posts: 6,103
My Mood:
SL Join Date: 5/7/2007
Client: V3
Send a message via Skype™ to Elysium Hynes
So he sells DVD´s for 300 dollars to teach gamblers how to cheat casinos?
__________________
I have a blog with stuffs in it Sium
You can also check my Flickr or my Pinterest for event covering.

Elysium Hynes is offline   Reply With Quote
1 User Laughed:
1 User Likes This:
Old 02-14-2011, 10:37 AM   #32 (permalink)
Senior Member

*SLU Supporter*
...
 
Join Date: Jul 2007
Posts: 15,774

Awards: 1
Guinea Pig 
Yeah, but I suspect the only people he's cheating are the buyers.
Walker is offline   Reply With Quote
Old 02-14-2011, 10:40 AM   #33 (permalink)
The Rainbow Girl
 
Boy Lane's Avatar
One last Latex Doll.
 
Join Date: Dec 2008
Location: The other end of your world...
Posts: 2,664
My Mood:
SL Join Date: Back in 2006
Client: Rainbow :)
Send a message via Yahoo to Boy Lane
Quote:
Originally Posted by Walker View Post
It's definitely him too. The email linked to the domain name confirms that.
Yes, confirmed. primeinx = zFire
Boy Lane is offline   Reply With Quote
2 Users Said Thanks :
Old 02-14-2011, 10:55 AM   #34 (permalink)
Particle Laboratory Elf
 
Jopsy Pendragon's Avatar
 
Join Date: Nov 2008
Location: Hillcrest, San Diego, USA
Posts: 5,609
My Mood:
SL Join Date: Jan 15 2004
Business: Light Sorcery
New Product: CyanIce

Automatically updates your hosts file with known untrustable websites as they're discovered!

Our technology is wide open, anyone can submit any website to our database, heck BLOCK THEM ALL!

(blocking secondlife.com is not recommended however, please don't submit that to the database or 'things will definitely break'... also, yeah, please don't submit google.com to the CyanIce blacklist database, okthxbyeee)
Jopsy Pendragon is online now   Reply With Quote
Old 02-14-2011, 11:02 AM   #35 (permalink)
Emergency Mustelid
 
Argent Stonecutter's Avatar
 
Join Date: Sep 2009
Posts: 15,398
Quote:
Originally Posted by Boy Lane View Post
I post this here separately from the other too long thread as this is important information and a much better way than disabling/enabling streaming media all the time.
You should still disable streaming media. Because Redzone isn't the only perp you need to be worried about.
__________________
Argent Stonecutter -- Skyhook Station -- Coonspiracy Store

"And now I'm going to show you something really cool."


The previous is a cybernetic datum published - in direct contravention of DoD Regulation #229RR3X3 - as being conducive to the physical, psychological and/or social well-being of the population.
Argent Stonecutter is offline   Reply With Quote
Old 02-14-2011, 11:06 AM   #36 (permalink)
Elysium Hynes is Typing..

*SLU Supporter*
 
Elysium Hynes's Avatar
My animal spirit is the lolcat
 
Join Date: May 2010
Location: Atlantic
Posts: 6,103
My Mood:
SL Join Date: 5/7/2007
Client: V3
Send a message via Skype™ to Elysium Hynes
Quote:
Originally Posted by Walker View Post
Yeah, but I suspect the only people he's cheating are the buyers.
Seems he´s used to selling snake oil then.
Elysium Hynes is offline   Reply With Quote
2 Users Agreed:
Old 02-14-2011, 11:09 AM   #37 (permalink)
Particle Laboratory Elf
 
Jopsy Pendragon's Avatar
 
Join Date: Nov 2008
Location: Hillcrest, San Diego, USA
Posts: 5,609
My Mood:
SL Join Date: Jan 15 2004
Business: Light Sorcery
@Argent-

Agreed about blocking media. Which is why I was joking about cyanice. Should such a thing catch on, malware media would just move to using IP's instead of hostnames in their urls. Would likely cost them a little extra to have a full virtual machine all to themselves instead... but they'd do it if they felt they had to.
Jopsy Pendragon is online now   Reply With Quote
1 User Agreed:
Old 02-14-2011, 11:22 AM   #38 (permalink)
Senior Member

*SLU Supporter*
...
 
Join Date: Jul 2007
Posts: 15,774

Awards: 1
Guinea Pig 
Quote:
Originally Posted by Elysium Hynes View Post
Seems he´s used to selling snake oil then.
The story just gets more and more sleazy. First we discovered the beginnings of some creepy looking dating site on the very same dedicated server that avatar names and IP addresses are being sent to, and now a get rich quick gambling scheme designed to part fools from their money. What next I wonder?
Walker is offline   Reply With Quote
Old 02-14-2011, 11:28 AM   #39 (permalink)
Elysium Hynes is Typing..

*SLU Supporter*
 
Elysium Hynes's Avatar
My animal spirit is the lolcat
 
Join Date: May 2010
Location: Atlantic
Posts: 6,103
My Mood:
SL Join Date: 5/7/2007
Client: V3
Send a message via Skype™ to Elysium Hynes
Quote:
Originally Posted by Walker View Post
The story just gets more and more sleazy. First we discovered the beginnings of some creepy looking dating site on the very same dedicated server that avatar names and IP addresses are being sent to, and now a get rich quick gambling scheme designed to part fools from their money. What next I wonder?
CIA spies, russian mobsters, fast cars and zombies. I call dibs on plot for an action packed film.
Elysium Hynes is offline   Reply With Quote
2 Users Laughed:
2 Users Like This:
Old 02-14-2011, 11:54 AM   #40 (permalink)
CEO Fallen Angel Designs
 
Lloyd Newman's Avatar
sutatS tidE
 
Join Date: Dec 2009
Location: Rigi
Posts: 3,412
My Mood:
SL Join Date: Late 2006
Business: Fallen Angel Designs
Client: Firestorm 4
OK, that's fine for windows.... digging into things for my Mac, I find that apparently I need to go into the terminal and play with the "ipfw" - IP Firewall. However, when I entered "man ipfw", there's a whole load of cryptic commands and I've got no idea what to do there...

Soooo...

I DL'd a free, open-source firewall front end for Mac called "NoobProof", and used it to set up a blacklist of those URLs.

Last edited by Lloyd Newman; 02-14-2011 at 11:59 AM.
Lloyd Newman is offline   Reply With Quote
Old 02-14-2011, 11:57 AM   #41 (permalink)
The Rainbow Girl
 
Boy Lane's Avatar
One last Latex Doll.
 
Join Date: Dec 2008
Location: The other end of your world...
Posts: 2,664
My Mood:
SL Join Date: Back in 2006
Client: Rainbow :)
Send a message via Yahoo to Boy Lane
Macs & Linux also have a hosts file, that should work the same way under /etc/hosts
Boy Lane is offline   Reply With Quote
Old 02-14-2011, 11:59 AM   #42 (permalink)
Emergency Mustelid
 
Argent Stonecutter's Avatar
 
Join Date: Sep 2009
Posts: 15,398
Quote:
Originally Posted by Elysium Hynes View Post
CIA spies, russian mobsters, fast cars and zombies. I call dibs on plot for an action packed film.
Zombie Jerky.

Jamaican style.
Argent Stonecutter is offline   Reply With Quote
1 User Said Yay!:
1 User Laughed:
Old 02-14-2011, 11:59 AM   #43 (permalink)
The Rainbow Girl
 
Boy Lane's Avatar
One last Latex Doll.
 
Join Date: Dec 2008
Location: The other end of your world...
Posts: 2,664
My Mood:
SL Join Date: Back in 2006
Client: Rainbow :)
Send a message via Yahoo to Boy Lane
Quote:
Originally Posted by Jopsy Pendragon View Post
@Argent-

Agreed about blocking media. Which is why I was joking about cyanice. Should such a thing catch on, malware media would just move to using IP's instead of hostnames in their urls. Would likely cost them a little extra to have a full virtual machine all to themselves instead... but they'd do it if they felt they had to.
Yes, that would actually simplify the blocking. It is easy to create hundreds of domain names (and this cost money) that point to the very same IP address. Getting a new IP is even costlier as he needs to purchase a new hosting package every single time. Not sure what a VM should change here. So this way or the other, it looks like we will have some fun .
Boy Lane is offline   Reply With Quote
Old 02-14-2011, 12:00 PM   #44 (permalink)
Senior Member
 
Ann Otoole's Avatar
 
Join Date: Oct 2008
Posts: 16,374
google street view for fun: Insanity Productions LLC - Mountlake Terrace, Washington (WA) | Company Profile
Ann Otoole is offline   Reply With Quote
Old 02-14-2011, 12:00 PM   #45 (permalink)
Senior Member

*SLU Supporter*
...
 
Join Date: Jul 2007
Posts: 15,774

Awards: 1
Guinea Pig 
I'd like to know how the hell to block IP addresses using the Windows 7 (Home Premium) firewall. I'm pretty sure it's possible, but Google leaves me confused.

Up yours Microsoft for fragmenting the featureset in Windows!
Walker is offline   Reply With Quote
Old 02-14-2011, 12:04 PM   #46 (permalink)
The Purple
 
Chalice Yao's Avatar
HEYOO!
 
Join Date: Dec 2007
Location: Somewhere purple, Germany
Posts: 7,771
My Mood:
SL Join Date: 20. January 2007
Client: NaCl
Quote:
Originally Posted by Walker View Post
I'd like to know how the hell to block IP addresses using the Windows 7 (Home Premium) firewall. I'm pretty sure it's possible, but Google leaves me confused.

Up yours Microsoft for fragmenting the featureset in Windows!
System -> System and security -> windows firewall -> advanced settings -> outgoing rules -> new rule -> custom -> all apps -> yaystuff
__________________
"Have you ever noticed that anybody driving slower than you is an idiot, and anyone going faster than you is a maniac?" - George Carlin
Chalice Yao is online now   Reply With Quote
1 User Said Thanks:
Old 02-14-2011, 12:04 PM   #47 (permalink)
Senior Member
 
Ann Otoole's Avatar
 
Join Date: Oct 2008
Posts: 16,374
Quote:
Originally Posted by Walker View Post
I'd like to know how the hell to block IP addresses using the Windows 7 (Home Premium) firewall. I'm pretty sure it's possible, but Google leaves me confused.

Up yours Microsoft for fragmenting the featureset in Windows!
The “host” file is under C:\windows\system32\drivers\etc\ or %systemroot%\system32\drivers\etc\ and thus cannot be edited by normal users.

Click Start – search for “Notepad“, right-click and select “Run as Administrator“. This should launch notepad with elevated privileges. Now, open the host file from the File menu, edit, install the entries that have been listed earlier, and save.
Ann Otoole is offline   Reply With Quote
1 User Said Thanks:
Old 02-14-2011, 12:04 PM   #48 (permalink)
Senior Member

*SLU Supporter*
...
 
Join Date: Jul 2007
Posts: 15,774

Awards: 1
Guinea Pig 
Quote:
Originally Posted by Boy Lane View Post
Yes, that would actually simplify the blocking. It is easy to create hundreds of domain names (and this cost money) that point to the very same IP address. Getting a new IP is even costlier as he needs to purchase a new hosting package every single time. Not sure what a VM should change here. So this way or the other, it looks like we will have some fun .
Bear in mind that he seems to be running his server from home through his Comcast Cable IP address. It was pointed out in another thread that changing the IP address could be as simple as disconnecting and reconnecting to the net or changing the MAC address on his router.
Walker is offline   Reply With Quote
2 Users Agreed:
Old 02-14-2011, 12:05 PM   #49 (permalink)
Senior Member

*SLU Supporter*
...
 
Join Date: Jul 2007
Posts: 15,774

Awards: 1
Guinea Pig 
Quote:
Originally Posted by Ann Otoole View Post
The “host” file is under C:\windows\system32\drivers\etc\ or %systemroot%\system32\drivers\etc\ and thus cannot be edited by normal users.

Click Start – search for “Notepad“, right-click and select “Run as Administrator“. This should launch notepad with elevated privileges. Now, open the host file from the File menu, edit, install the entries that have been listed earlier, and save.
You can't block IP addresses with the hosts file. That's why I'm curious about the capabilities of the Windows 7 firewall.
Walker is offline   Reply With Quote
Old 02-14-2011, 12:06 PM   #50 (permalink)
Senior Member
 
Ann Otoole's Avatar
 
Join Date: Oct 2008
Posts: 16,374
Quote:
Originally Posted by Walker View Post
Bear in mind that he seems to be running his server from home through his Comcast Cable IP address. It was pointed out in another thread that changing the IP address could be as simple as disconnecting and reconnecting to the net or changing the MAC address on his router.
then he has to update the DNS tables and for that duration it takes for the address to propagate the system would be dead. Hell the guy might be running the thing on a leeched wireless router lol.
Ann Otoole is offline   Reply With Quote
1 User Laughed:
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are On