±Recent Visitors

Recent Visitors to Com-Central!

±User Info-big


Welcome Anonymous

Nickname
Password

Membership:
Latest: HighestAce
New Today: 0
New Yesterday: 0
Overall: 6648

People Online:
Members: 0
Visitors: 278
Total: 278
Who Is Where:
 Visitors:
01: Downloads
02: Home
03: Home
04: Home
05: Home
06: Community Forums
07: Home
08: Community Forums
09: Home
10: Home
11: Community Forums
12: Home
13: Community Forums
14: Home
15: Photo Gallery
16: Home
17: Home
18: Home
19: Home
20: Home
21: Community Forums
22: Community Forums
23: LinkToUs
24: Community Forums
25: Photo Gallery
26: Home
27: Home
28: Home
29: Home
30: Community Forums
31: Home
32: Home
33: Home
34: Home
35: Community Forums
36: Home
37: Home
38: Home
39: Home
40: Home
41: Home
42: Home
43: Home
44: Photo Gallery
45: CPGlang
46: Community Forums
47: Photo Gallery
48: Home
49: Community Forums
50: Member Screenshots
51: Community Forums
52: Home
53: Home
54: Home
55: Community Forums
56: Community Forums
57: Photo Gallery
58: Home
59: Community Forums
60: CPGlang
61: Community Forums
62: Home
63: Community Forums
64: Home
65: Community Forums
66: CPGlang
67: Community Forums
68: Home
69: Home
70: Community Forums
71: Home
72: CPGlang
73: Community Forums
74: Community Forums
75: Home
76: Home
77: Downloads
78: Home
79: Home
80: Home
81: Community Forums
82: CPGlang
83: Community Forums
84: Community Forums
85: Community Forums
86: Community Forums
87: Community Forums
88: Community Forums
89: Community Forums
90: Community Forums
91: Home
92: Your Account
93: Photo Gallery
94: Community Forums
95: CPGlang
96: Community Forums
97: Home
98: Photo Gallery
99: Community Forums
100: Community Forums
101: Community Forums
102: Photo Gallery
103: CPGlang
104: Community Forums
105: Home
106: Community Forums
107: Community Forums
108: CPGlang
109: Home
110: Community Forums
111: Home
112: Home
113: Home
114: Community Forums
115: Member Screenshots
116: Home
117: Community Forums
118: Home
119: Member Screenshots
120: Home
121: Home
122: Home
123: Member Screenshots
124: Home
125: Home
126: Home
127: Community Forums
128: Member Screenshots
129: Community Forums
130: Home
131: Home
132: Downloads
133: Community Forums
134: Community Forums
135: Home
136: Community Forums
137: Home
138: Home
139: Community Forums
140: Home
141: Home
142: Home
143: Home
144: Home
145: Home
146: Home
147: Home
148: Statistics
149: Home
150: Home
151: Home
152: Home
153: Home
154: Community Forums
155: Community Forums
156: Community Forums
157: Home
158: Home
159: Home
160: Home
161: Home
162: Community Forums
163: Home
164: CPGlang
165: Community Forums
166: Community Forums
167: Home
168: Photo Gallery
169: CPGlang
170: Member Screenshots
171: Photo Gallery
172: Home
173: Home
174: Home
175: Community Forums
176: CPGlang
177: Home
178: Community Forums
179: Community Forums
180: Community Forums
181: Home
182: Community Forums
183: Home
184: Home
185: Member Screenshots
186: CPGlang
187: Community Forums
188: Community Forums
189: Home
190: Community Forums
191: Home
192: Photo Gallery
193: Community Forums
194: Your Account
195: Community Forums
196: Home
197: Community Forums
198: Community Forums
199: Photo Gallery
200: Community Forums
201: Downloads
202: Photo Gallery
203: Community Forums
204: Community Forums
205: Home
206: Statistics
207: Community Forums
208: Community Forums
209: Home
210: News Archive
211: Home
212: Home
213: Community Forums
214: Community Forums
215: Community Forums
216: Community Forums
217: Downloads
218: Community Forums
219: Community Forums
220: Downloads
221: Home
222: Photo Gallery
223: Home
224: Photo Gallery
225: Home
226: Statistics
227: Community Forums
228: Home
229: Photo Gallery
230: CPGlang
231: Community Forums
232: Home
233: Home
234: Home
235: Home
236: Home
237: Photo Gallery
238: Community Forums
239: Home
240: News
241: Community Forums
242: Community Forums
243: CPGlang
244: CPGlang
245: Home
246: Home
247: Home
248: Community Forums
249: Home
250: Home
251: Community Forums
252: Home
253: Home
254: Community Forums
255: Home
256: Member Screenshots
257: Community Forums
258: Downloads
259: Photo Gallery
260: Community Forums
261: Community Forums
262: Community Forums
263: Home
264: Home
265: Community Forums
266: News
267: Home
268: Home
269: Home
270: Downloads
271: Home
272: Photo Gallery
273: Member Screenshots
274: Your Account
275: Home
276: Community Forums
277: Home
278: Downloads

Staff Online:

No staff members are online!
An EYE opening story about hackers! :: Archived
This is a forum for Software related items such as OS', Virus notices, cool or free programs, etc. Gaming software should go in the gaming folder pertaining to the current info.
Post new topic    Revive this topic    Printer Friendly Page     Forum Index ›  Software

Topic Archived View previous topic :: View next topic  
Author Message
Shadow_Bshwackr
Janitor

Offline Offline
Joined: Jan 21, 2005
Posts: 7019
Location: Central Illinois, USA
PostPosted: Sun Feb 19, 2006 12:38 pm
Post subject: An EYE opening story about hackers!

A story written by Brian Krebs @ Washingtonpost.com...

If this story don't make you want to secure your Windows install or worse yet, make you so paranoid you want to move to an alternative OS, I'll be very surprised. I sure don't like many "the sky is falling" articles, but this is too good to not share...

Invasion of the Computer Snatchers
Hackers are hijacking thousands of PCs to spy on users, shake down online businesses, steal identities and send millions of pieces of spam. If you think your computer is safe, think again

By Brian Krebs
Sunday, February 19, 2006; Page W10

In the six hours between crashing into bed and rolling out of it, the 21-year-old hacker has broken into nearly 2,000 personal computers around the globe. He slept while software he wrote scoured the Internet for vulnerable computers and infected them with viruses that turned them into slaves.

Now, with the smoke of his day's first Marlboro curling across the living room of his parents' brick rambler, the hacker known online as "0x80" (pronounced X-eighty) plops his wiry frame into a tan, weathered couch, sets his new laptop on the coffee table and punches in a series of commands. At his behest, the commandeered PCs will begin downloading and installing software that will bombard their users with advertisements for pornographic Web sites. After the installation, 0x80 orders the machines to search the Internet for other potential victims.

A look at how hackers control thousands of PCs and use them to make money.


The young hacker, who has agreed to be interviewed only if he isn't identified by name or home town, takes a deep drag of his smoke and leans back against the couch to exhale. He smiles. This is his day job, and his work is finished in less than two minutes. In two weeks, he will receive a $300 check from one of the online marketing companies that pays him for his services.

"Most days, I just sit at home and chat online while I make money," 0x80 says. "I get one check like every 15 days in the mail for a few hundred bucks, and a buncha others I get from banks in Canada every 30 days." He says his work earns him an average of $6,800 per month, although he's made as much as $10,000. Not bad money for a high school dropout.

Hacked, remote-controlled home computers, known as robots or "bots," and large groups of robot networks like the one 0x80 runs -- called "botnets" -- are the souped-up cyber engines driving nearly all criminal commerce on the Internet. Botnets are used to relay millions of pieces of junk e-mail, or spam, touting everything from cheap Viagra to get-rich-quick business schemes. And the botmasters who control these computer networks are at the heart of ominous and increasingly common online shakedowns known as "denial of service attacks." In such an attack, Web gangsters demand tens of thousands of dollars in protection money from businesses. If the businesses refuse to pay, the criminals order the thousands of computers that make up their botnets to flood the Web sites with meaningless traffic, crippling the businesses and costing them thousands or hundreds of thousands of dollars in lost revenue.

0x80 says that he doesn't use his botnet to shake down businesses. Instead, he and a growing number of botmasters make money by seeding their botnets with spyware, also known as adware. Once installed on a PC, the adware serves up pop-up advertisements and mines data about the user's online browsing habits. The computer worm that powers the botnet also gathers far more sensitive data from the victim's machine, including passwords, e-mail addresses, Social Security numbers and credit card data. The spyware and adware problem is pervasive and growing: A recent survey by the National Cyber Security Alliance and America Online found that four of five computers connected to the Web have some type of spyware or adware installed on them, with or without the owner's knowledge.

"Most days, I just sit at home and chat online while I make money," says 0x80, who says he makes $6,800 a month on average.(Sarah L. Voisin - The Washington Post)
The distribution of online advertisements via spyware and adware has become a $2 billion industry, according to security software maker Webroot Software Inc. And as the industry has boomed, so have the botnets. Just a few months ago, FBI agents arrested a 20-year-old from Southern California for installing adware on a botnet of more than 400,000 hacked computers. Jeanson James Ancheta's victims included computers at the Naval Air Warfare Center and machines at the Defense Information Systems Agency, according to government documents. He pleaded guilty to the charges last month.

Like Ancheta, 0x80 installs adware and spyware surreptitiously, though the law requires the computer owner's consent. The young hacker doesn't have much sympathy for his victims. "All those people in my botnet, right, if I don't use them, they're just gonna eventually get caught up in someone else's net, so it might as well be mine," 0x80 says. "I mean, most of these people I infect are so stupid they really ain't got no business being on [the Internet] in the first place."

Tall and lanky, with hair that falls down to his eyebrows, 0x80 almost never looks you in the eye when he talks, his accent a slurry of heavy Southern drawl and Midwestern nasality. He lives with his folks in a small town in Middle America. The nearest businesses are a used-car lot, a gas station/convenience store and a strip club, where 0x80 says he recently dropped $800 for an hour alone in a VIP room with several dancers. He tells his parents that he works from home for a Web design firm. His bedroom resembles a miniature mission control center, with computers, television and computer monitors, and what must be several miles' worth of tangled wires plugged into an array of surge-protected power strips.

At the moment, 0x80 controls more than 13,000 computers in more than 20 countries. This morning he installs spyware on just a few hundred of the 2,000 PCs that he has commandeered in the last few hours. He will stagger the remaining installations throughout this day and into the next, using a program he wrote that automates the process. If he installs too many bundles of spyware at once, the online marketing companies, "get suspicious, they cut me off, and I don't get paid," he mumbles, squinting at the screen while the nub of his cigarette sprinkles ashes all over his laptop and the coffee table. "I've learned not to get greedy."

A small dog with matted fur enters the living room and winds through 0x80's feet. 0x80 gives the dog a gentle shove with his foot, without even looking up from his laptop. He furiously stabs at the keyboard with his two forefingers, punching out a short command that produces a mesmerizing blur of black-on-white text that scrolls up the computer screen at several pages per second. 0x80 makes it halfway through a cigarette before the text flying across the screen finally stops. The command he typed -- "pstore" -- is short for "password store." On the screen in front of him is a listing of every user name and password that the owner of each infected computer has stored in the Microsoft Internet Explorer Web browser on his or her computer.

A quick scroll through the first few dozen pages of the file reveals credentials his victims have used to log in to online accounts at PayPal, eBay, Bank of America and Citibank, to name just a few. Many of the Web sites for which user names and passwords are stored are harmless, such as sports or hobby sites. Others are potentially far more revealing, such as hard-core sex and fetish Web sites. 0x80 has also found credentials for thousands of e-mail accounts, including dozens at ".mil" and ".gov" (U.S. military and government) addresses.


Want to read the whole article? Click HERE!

Back to top
View user's profile Visit poster's website Photo Gallery
JG300-Stoopy
Power User

Offline Offline
Joined: Jan 05, 2005
Posts: 5840
Location: Group W bench
PostPosted: Sun Feb 19, 2006 4:04 pm
Post subject: Re: An EYE opening story about hackers!

Heckuva good read, Senor Bush, and thanks...although, on a point of order, "0x80" is more often properly pronouced "hex-eighty" among the old-school actual programming community....but leave it to the third-generation kids and hackers to corrupt even that much...as tho the modern-day corruption of the english language via terms such as "gr8", "h8", "w8" "y do u" etc isn't bad enough....

Here's a dumb question along the same lines: Isn't there similar danger in going to HTML links and such, given by parties or persons you don't trust?

I ask because although I've always been extremely well-protected (with not ONE virus instance in over 20 years) I finally did get brought down hard by some damn spyware thingy that I got by visiting a website that hosts - of all innocent things - Guitar Tablature (sheet music for those that are too lazy to read real music). All it took was one visit to that website and some pop-ups that came up. I backed right out but it was way too late, I had registry entries made and a nasty little thing that came up on the next restart. REverting back to a restore point was the only fix. I happened across the same site yesterday (slow learner huh?) looking for something else and this time, MS Anti-spyware caught it and I also used Task Manager to kill the process(es) that had been loaded.

So, my question is, say someone you don't really know posts an HTML link, say here in a forum or wherever....could be anything, but let's say a personal web page or greeting card link etc......should that be considered "high-risk" dangerous stuff to stay away from? Because that's the path I take....am I too paranoid?

_________________
"Once your reputation is ruined, you can live quite freely."
Back to top
View user's profile Visit poster's website Photo Gallery
Doug_Kibbey
Power User

Offline Offline
Joined: Jan 23, 2006
Posts: 4678
Location: The Great Satan
PostPosted: Sun Feb 19, 2006 4:12 pm
Post subject: Re: An EYE opening story about hackers!

- JG300-Stoopy
.
"corruption of the english language via terms such as "gr8".........

could be anything, but let's say a personal web page or greeting card link etc......should that be considered "high-risk" dangerous stuff to stay away from?


I don't think you're paranoid...and I flatter myself that I get your point completely Wink
Back to top
View user's profile Visit poster's website Photo Gallery
RCAF_MadDog
Janitor

Offline Offline
Joined: Nov 13, 2004
Posts: 849

PostPosted: Sun Feb 19, 2006 4:26 pm
Post subject: Re: An EYE opening story about hackers!

I dontt think your paranoid either
The way I look at it Stoopy any link your not sure of is potentially dangerous. I dont usually click a link that is posted anywhere unless my sheilds are up or I know the person that posted the link. With the way the internet is nowadays its a use at your own risk deal. All we can do is to try to make sure our sheilds are going to hold up lol
Back to top
View user's profile Photo Gallery
Shadow_Bshwackr
Janitor

Offline Offline
Joined: Jan 21, 2005
Posts: 7019
Location: Central Illinois, USA
PostPosted: Sun Feb 19, 2006 4:57 pm
Post subject: Re: An EYE opening story about hackers!

Well, the purpose of the post was to make those that don't know the hazards exist and give them some insight on how dangerous this really is.

Keeping up with your OS security updates is crutial these days and running some kind of firewall, anti-virus, spy tools and spy look out tools is a normal way of life for savy users.

To answer your question Stoopy, yep, HTML links can pass 'bugs' into the system and I fix a lot of puters who's users visits less than desireable locations on the web. I find running Webroot Spy Sweeper does a nice job watching your machine for this.

The saying "An ounce of prevention is worth more than a pound of cure." is certainly true when using the net and being pro-active is a much better approach than being passive in this case.

So, let me tell you what I'm running...

Firewall, Adaware, SpyBot, Webroot Spy Sweeper, MS Anti-spyware, Avast and/or AVG anti-virus (I use both, but not at the same time.) These are just the front end blockers, then I also run as maintainence, PcRescue, System Mechanic and Registery Mechanic.

It's a shame you have to run this stuff, but if you don't, it's a matter of time before you get hit.

Something else to think about. I also run Linux/XP as a dual boot and at times will stay in that OS for quite a while and only come back to XP for gaming. This is especially true if there's been a warning on the net about specific worms, bots or virus' out like the recent black worm. Once the threat is gone, I'll boot into XP, do all the updates, rescan all sectors and all is well... Wink
Back to top
View user's profile Visit poster's website Photo Gallery
Shades
Forum Tree-Rat

Offline Offline
Joined: Mar 07, 2005
Posts: 6475
Location: 3rd Branch up, 'Ye Olde Oak', Green Wood.
PostPosted: Sun Feb 19, 2006 5:22 pm
Post subject: Re: An EYE opening story about hackers!

I'm amazed by how many people I run into in RidgeRunners who still don't have a firewall.
I'd be one of 'em if folks like EW_Gorilla hadn't explained it all to me when I first came on-line.
Cheers monkeys!

_________________
Skwerl's place.

Com-Central's cutest, fluffiest, twitchiest, tail.
CPU > Intel i9-9900k (o/c 4.9GHz); COOLING > BeQuiet! Dark Rock Pro 4;
MOBO > ASUS PRIME Z390-A; RAM > 2x32GB Corsair LPX 2666MHz;
GPU > Gigabyte GEFORCE GTX650Ti PCI-e 3.0 2Gb GDDR5;
AUDIO > Creative X-Fi Xtreme Music (plus - Universal Audio UAD2 Quad Custom accelerator);
HDD > 3x1TB+ M.2. SSDs; LCD > DELL - S2419HGF (1920x1080);
PSU > 650W be quiet Straight Power 11 - 80+ Gold;
CASE > BeQuiet! SILENT BASE 601; OS > Windows 11 Home Advanced (64-bit).
Back to top
View user's profile Visit poster's website ICQ Number
RCAF_Wingnut
Power User

Offline Offline
Joined: Jan 29, 2005
Posts: 786
Location: Omaha, Ne.
PostPosted: Sun Feb 19, 2006 9:02 pm
Post subject: Re: An EYE opening story about hackers!

I once read a story by the owner of one of those companies attacked by bot controlled pc's regarding his personal research into the attack and defense against the bots. He discovered that the best, at that time, firewall available was the Zonealarm from Zone Labs. Of the programs he tested, it was the only one that blocked attempts from inside to access the net without permission of the owner. All the rest allowed a program on the inside to access outside the system. They all blocked outside attempts to get in, but a lot of the time the bots are attached to e-mail that people downloaded, and didn't know it was there. The bots that attacked his business were controlled by a 15 year old kid. The businessmans computer was protected inside his network by his built in firewall on his router, but the flood of pings from the bot controlled pc's blocked his entire bandwidth for several days.

_________________
"May your Enemys Run With Fear!!"
Back to top
View user's profile Photo Gallery
Shades
Forum Tree-Rat

Offline Offline
Joined: Mar 07, 2005
Posts: 6475
Location: 3rd Branch up, 'Ye Olde Oak', Green Wood.
PostPosted: Mon Feb 20, 2006 9:28 am
Post subject: Re: An EYE opening story about hackers!

That research was specific to that company's computer network and shouldn't be taken as a recommendation for other systems:-
Security will vary from pc to pc depending on the components and software involved. ZA may well have served that chap well. It doesn't necessarilly mean it would serve someone else equally as well.

I've used McAfee and ZA in the past, which were the best for the machines I had them installed on. Now I use Norton as the NIS bundle is the best for my current machine. I'd rather not as NIS is so thorough, it affects system performance but I'm not sacrificing system security.
As Norton is still the best for my machine, I'll upgrade to NIS2006 and then review what's available when the time comes to change again.

_________________
Skwerl's place.

Com-Central's cutest, fluffiest, twitchiest, tail.
CPU > Intel i9-9900k (o/c 4.9GHz); COOLING > BeQuiet! Dark Rock Pro 4;
MOBO > ASUS PRIME Z390-A; RAM > 2x32GB Corsair LPX 2666MHz;
GPU > Gigabyte GEFORCE GTX650Ti PCI-e 3.0 2Gb GDDR5;
AUDIO > Creative X-Fi Xtreme Music (plus - Universal Audio UAD2 Quad Custom accelerator);
HDD > 3x1TB+ M.2. SSDs; LCD > DELL - S2419HGF (1920x1080);
PSU > 650W be quiet Straight Power 11 - 80+ Gold;
CASE > BeQuiet! SILENT BASE 601; OS > Windows 11 Home Advanced (64-bit).
Back to top
View user's profile Visit poster's website ICQ Number
Display posts from previous:   
Post new topic    Revive this topic    Printer Friendly Page    Forum Index ›  Software
Page 1 of 1
All times are GMT - 6 Hours

Archive Revive
Username:
This is an archived topic - your reply will not be appended here.
Instead, a new topic will be generated in the active forum.
The new topic will provide a reference link to this archived topic.