change your passwords....root user everything
then use chkrootkit to scan if you got rooted (just in case)
make sure you have a solid set of firewall rules
update packages that have had security vulnerabilities
and browse your logs a bit to see if you can figure out what happened from their.
if you want extra security run a scanner like snort
__________________
A damn dirty hippie without the dirty part....
|