Webmaster Forum
Go Back   Webmaster Forums UK SEO SEM Webmaster Community Forum - UKWW > Business Discussions > Computer and Software Forum
Register FAQ Members List Downloads Calendar Today's Posts Webmaster Resources Webmaster Blogs

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 08-07-2005, 09:27 PM
PrivateInvestigator
Guest
 
Posts: n/a
iTrader: / %
Default ID Theft warning - beware this software!

I got this from one of the discussion groups I am involved in professionally (private investigation) it is currently unsubstantiated as far as I know but I'd take heed as this came from a professional investigator.

---

AUGUST 05, 2005 (COMPUTERWORLD) <http://www.computerworld.com/> - Officials
at Sunbelt Software, a Clearwater, Fla.-based vendor of antispyware tools,
said the company stumbled upon a massive ID theft ring that is using a
well-known spyware program to break into and systematically steal
confidential information from an unknown number of computers worldwide.
The operation was discovered yesterday during research Sunbelt was doing on
a spyware program belonging to a particularly dangerous class of browser
hijacking tools called CoolWebSearch (CWS), according to Sunbelt's
president, Alex Eckelberry.

CWS programs are extremely hard to detect and remove, and are used to
redirect users to Web sites that use spyware tools to collect a variety of
information from infected computers.

The CWS variant being researched by Sunbelt turned infected systems into
spam zombies and uploaded a wide variety of personal information to a remote
server apparently located in the U.S. That server holds a "treasure trove of
information" for ID thieves, Eckelberry said.

Sunbelt's research showed that the information being uploaded to the remote
server included chat sessions, user names, passwords and bank information,
he said. The bank information included details on one company bank account
with more than $350,000 in deposits and another belonging to a small
California company with over $11,000 in readily accessible cash, he said.

Many of the records being uploaded also contained eBay account information,
he said. Among the highly personal bits of information Sunbelt was able to
retrieve from the server were one family's vacation plans, instructions to a
limo driver to pick up passengers from an airport and details about one
computer user with a penchant for pedophilia.

Sunbelt officials did not say how they accessed the material. But the
existence of a large file that the company said it retrieved from the remote
server was confirmed by Computerworld. Sunbelt said the file contained user
names, addresses, account information, phone numbers, chat session logs,
monthly car payment information and salary data.

"It's one of the most egregious things we have ever seen," Eckelberry. "We
know this kind of data is out there, but this is the first time we actually
have the data that the criminals are using."

Information gathered from infected computers is uploaded to the remote
server and stored in highly organized files that appear to be accessed by
multiple ID thieves, Eckelberry said. The files grow to anywhere from 10MB
to 20MB in size before they are refreshed with new information, he said.

The FBI has been contacted and is working on the case, Eckelberry said. In
addition, Sunbelt has contacted some of the individuals and banks whose data
has been logged to warn them of the compromise.

The domain of the remote server appears to have been registered in China,
although the server itself is located in the U.S., Eckelberry said. "We are
working to get that server taken down."

He declined to offer more details.

A spokesman for the FBI could not be reached for comment.

Sunbelt's discovery brings home the seriousness and scope of the growing ID
theft problem, said Pete Lindstrom, an analyst at Spire Security LLC in
Malvern, Pa.

"I think this stuff is much more significant than the notification of
[compromises] by credit card companies," Lindstrom said. That's because the
credit card industry as a whole has better controls in place to detect and
prevent abuses resulting from such compromises than individuals, he said.

"This stuff hits home because it's personal. It's like taking something out
of your home," Lindstrom said. "Each and every one of these accounts can be
compromised, and it hurts someone."
Digg this Post!Add Post to del.icio.usStumble this Post!Wong this Post!
Reply With Quote
  #2 (permalink)  
Old 08-08-2005, 11:59 AM
Senior Member
 
Join Date: Aug 2004
Posts: 1,451
iTrader: 0 / 0%
Thanks: 0
Thanked 0 Times in 0 Posts
Nominated 0 Times in 0 Posts
TOTW/F/M Award(s): 0
Paul_KY is on a distinguished road
Send a message via Yahoo to Paul_KY
Default

Looks like a few folks are going to jail for a very long time.

Gotcha!
__________________
"There's no such thing as impossible. It's a myth. Don't believe it."
Digg this Post!Add Post to del.icio.usStumble this Post!Wong this Post!
Reply With Quote
  #3 (permalink)  
Old 08-08-2005, 12:34 PM
PrivateInvestigator
Guest
 
Posts: n/a
iTrader: / %
Default

With XP and google surf bar automatically remembering entered fields like email addresses, credit card info addresses it is no wonder the info is easy to get it isn't even encrypted!
Digg this Post!Add Post to del.icio.usStumble this Post!Wong this Post!
Reply With Quote
Reply

Bookmarks

Webmaster Resources
UK WW SEO Tools
Find UK Hosts
 
The Forum Rules
Forum Rules - MUST READ
 
Site Of the Month
BizzFace
Nominate site of the month
 
Tag Cloud
adf apple iphone apple iphone 3g article writer brand new contents data entry dj mixer edible oil electronics events in india free social hosting free space google google analytical tool graphics design iphone iphones joomla laptops link exchange motorola rokr e6 mysql nokia partners phones phpmyadmin poineer programming research social web space wanted uk web development web hosting webmasters web space for free

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


Similar Threads
Thread Thread Starter Forum Replies Last Post
Beware of hackers temi General Webmaster Talk 4 03-05-2007 05:31 PM
Beware of world cup worm temi General Webmaster Talk 0 06-22-2006 08:21 AM
BT Broadband users beware temi General Webmaster Talk 2 03-24-2006 11:52 PM
ID theft 'costs UK £1.7bn a year' temi General Webmaster Talk 0 02-06-2006 01:39 PM
Fraudsters beware Paul_KY e-Commerce 7 05-23-2005 10:51 PM


All times are GMT. The time now is 11:15 AM.

UK Webmaster World Forums - Internet marketing, web development, domain names, SEO contest and discussuons.
Subscribe to our feeds   Subscribe to our feeds

Powered by vBulletin® Version 3.7.0
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.1.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151