View Single Post
  #6 (permalink)  
Old 05-06-2004, 11:17 PM
mikmik's Avatar
mikmik mikmik is offline
WebProWorld 1,000+ Club
 

Join Date: Aug 2003
Location: Edmonton, AB, Canada
Posts: 3,406
mikmik RepRank 1
Default

Identity Theft is the biggest problem right now, wen.
So is computer highjacking.
I am really trying to get my data retrieved and I have a whole pile of security sites that are full of 'how to's' for people to recognize when they are in trouble.

One method that is a biggie, is the use of 'BHOs", or Browser Helper Objects. These are also known as 'plug-in's', and the common ones are Macromedia flash player, and various toolbars, such as the Google and Alexa add-ons.

What happens is that many, many people are fooled into installing "Hotbar", and this is the worst spyware installer going. The 'spyware' is serruptitiously installed to the client machine, and transmits information from the client hard drive to clandestine destinations, and can be used for all manor of purposes.

The most illegal method right now, is through highjacking the clients browser and redirecting to a malicious webpage. At said page, keyloggers and other software are installed, as well as FTP and server programs that run hidden in the background, unknown to the user.
The entire browser window can be spoofed. This is done through the use of javascript.

What happens is that the browser - let's say 'Internet Explorer' - that the computer user sees on their moniter, is a 'virtual' image, and is not the real picture of what is really going on. So while it looks like the user is at one site, and all is normal, the computer - via the real IE - is at another address (IP or URL) and is feeding all the passwords and credit card info to someone for obvious uses.

Another bigtime problem, is through IM and P2P (Kazaa). Highjacking software is spread unknowingly between users of these, and is the sort of thing I am just trying to recover from.

It is EXTREMELY sophisticated.

All these are EXTREMELY sophisticated, wen. They are scary!!!!

I had a server transmitting on EIGHT channels using dialers and an installed server and router.
Now get this: I was getting an entirely spoofed desktop. I was seeing only what the software wanted me to see.

So, it is beyond belief what is going on,wen.
It is happenning on 38 to 60 percent of computers right now without people knowing about it.
Their computers are being used for Dedicated Denial os Service attacks, and to spread SPAM and trojans/virusses/worms the whole time they are on the internet.

Look at the link light on your NIC port, where the internet cable plugs into your computer. If the lights are both on while you are not doing anything to visit websites, just static on one page, then you have a problem.

I will try to get an article written next week. I have offers of help editting one, and I have been talking with Sophos Security, and AV.

I will PM you, ok? I have a LOT of important stuff here. I have to get to some clients, but I am putting some effort into this now.

I admire what you are doing, wen. I have been concentrating myself on this type of thing for a while now because so many of my friends here in Kelowna were always getting into trouble, and I have from day one set out to provide help to everyone: I just am real bad at getting a proper website up :O)))

I mean it, everyone, I just had the living ** scared out of me this last three weeks, it is bad.

Get all updates, and use several online scans to check your computer regularily.
And don't always believe what you are seeing. Check your NIC for suspicious activity.
__________________
What I am is what I am, are you what you are, or what.
Eddie Brickel
Reply With Quote