| change your passwords....root user everythingthen use chkrootkit to scan if you got rooted (just in case)
 make sure you have a solid set of firewall rules
 update packages that have had security vulnerabilities
 and browse your logs a bit to see if you can figure out what happened from their.
 if you want extra security run a scanner like snort
 
				__________________A damn dirty hippie without the dirty part....
 |