<?xml version="1.0" encoding="UTF-8"?>

<rss version="2.0" xmlns:blogChannel="http://backend.userland.com/blogChannelModule">

<channel>
<title>Re: USB drive in </title>
<link>http://www.dslreports.com/forum/r13482102</link>
<description></description>
<language>en</language>
<pubDate>Fri, 27 Nov 2009 07:26:06 EDT</pubDate>
<lastBuildDate>Fri, 27 Nov 2009 07:26:06 EDT</lastBuildDate>

<item>
<title>Just FWIW...</title>
<link>http://www.dslreports.com/forum/remark,13482898</link>
<description><![CDATA[<A HREF="/useremail/u/150929"><b>Jerm</b></A> : The websites aren't hosted on actual servers like you and I are used to:  The website that downloads the trojans to the PC are actually hosted on infected zombie machines - ie cable modem, DSL, and other various broadband connection hacked machines.<br><br>Want to read more about zombie attacks?  Great read here:<br>&raquo;<A HREF="http://grc.com/dos/grcdos.htm" >grc.com/dos/grcdos.htm</A>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,13482898</guid>
<pubDate>Tue, 24 May 2005 12:48:49 EDT</pubDate>
</item>

<item>
<title>Re: USB drive</title>
<link>http://www.dslreports.com/forum/remark,13482416</link>
<description><![CDATA[<A HREF="/useremail/u/429566"><b>Jason Levine</b></A> : Nope, it's an e-Gold account.  I'm guessing the Feds have either already had the account frozen or are keeping it running at the moment just to track who's logging into it.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,13482416</guid>
<pubDate>Tue, 24 May 2005 11:35:08 EDT</pubDate>
</item>

<item>
<title>Re: USB drive</title>
<link>http://www.dslreports.com/forum/remark,13482345</link>
<description><![CDATA[<A HREF="/useremail/u/429566"><b>Jason Levine</b></A> : Exactly.  If anything, this is a dumb criminal scheme.<br><br>First of all, they have an e-mail address (removed for purposes of the screenshot, but I'm sure it's fully visible in the "live" version).  This is apparently a box that's being checked by the extortionists in some way, shape, or form.  (Otherwise, how would they arrange for those $200 payments?)  There's got to be a way to track who's accessed that account and from where.<br><br>In addition, it relies on redirecting users to a website to download the trojan.  Find out who set up that website and you've found your scammer (or at least one of them).<br><br>Failing that, the authorities could e-mail the address pretending to be a user whose data files were locked out.  (For additional authenticity, they could intentionally infect a sacrificial box that didn't have anything important on it.)  Once contact is made, payment arrangements can be set up and the criminals tracked down.<br><br>This guy (group?) has left many ways to track them down.  I wouldn't be surprised to hear of an arrest in this case in the not too distant future.  (Law enforcement can take it's time in order to get things right sometimes, so that might slow down the actual arrest announcement somewhat.)<br><br>EDIT:  The Websense article reveals that the payment method is an e-Gold account.  This should be very easy to trace.  In addition, the whole thing should be easy to take offline.  Take down the website hosting the trojan and shut down the e-Gold account.  (Sure, the scammers will release another version that connects to a different website and e-Gold account, but it'll take them offline for awhile.)<br><br><SMALL>--<br>-Jason Levine<br><A HREF="http://www.jasons-toolbox.com/">http://www.jasons-toolbox.com/</A><br><A HREF="http://www.PCQandA.com/">http://www.PCQandA.com/</A><br><A HREF="http://www.urateit.com/">http://www.urateit.com/</A></SMALL>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,13482345</guid>
<pubDate>Tue, 24 May 2005 11:24:36 EDT</pubDate>
</item>

<item>
<title>Re: USB drive</title>
<link>http://www.dslreports.com/forum/remark,13482342</link>
<description><![CDATA[<A HREF="/useremail/u/667355"><b>wilburyan</b></A> : Not if it's a Westurn Union Money order... a con artist's best friend :huh:]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,13482342</guid>
<pubDate>Tue, 24 May 2005 11:23:55 EDT</pubDate>
</item>

<item>
<title>Re: USB drive</title>
<link>http://www.dslreports.com/forum/remark,13482170</link>
<description><![CDATA[<A HREF="/useremail/u/1054326"><b>wifi4milez</b></A> : Cant they just track where you send the money and have the local authorities arrest the criminals when they come to pick up the cash? Clearly the criminals are not in the US, but extortion <B>MUST</B> be illegal in 99% of the countries in the world. Unless of course the local authorities (or govt) are in on the scheme......<br><SMALL>--<br><B>I like dogs, guns, and cheeseburgers. Whats your malfunction?</B></SMALL>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,13482170</guid>
<pubDate>Tue, 24 May 2005 11:00:08 EDT</pubDate>
</item>

<item>
<title>Re: USB drive</title>
<link>http://www.dslreports.com/forum/remark,13482115</link>
<description><![CDATA[<A HREF="/useremail/u/688604"><b>Ender_W</b></A> : They will be at the same risk if plugged in.]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,13482115</guid>
<pubDate>Tue, 24 May 2005 10:54:09 EDT</pubDate>
</item>

<item>
<title>Re: USB drive</title>
<link>http://www.dslreports.com/forum/remark,13482102</link>
<description><![CDATA[<A HREF="/useremail/u/508610"><b>Liontaur</b></A> :  <BLOCKQUOTE><SMALL>quote:</SMALL><HR>This website hosts the application that encodes files on the user's local hard disk and on any mapped drives on the machine. <HR></BLOCKQUOTE><br>Looks like any drives that are mapped could be affected. Very sneaky.<br><SMALL>--<br><I>Are you ready to start <A HREF="/faq/11022">BOINCing</A>? Read my <A HREF="http://www.liontaur.com/blog">blog</A></SMALL>]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,13482102</guid>
<pubDate>Tue, 24 May 2005 10:52:29 EDT</pubDate>
</item>

<item>
<title>USB drive</title>
<link>http://www.dslreports.com/forum/remark,13482076</link>
<description><![CDATA[<A HREF="/useremail/u/242602"><b>nivago</b></A> : Would it be safer to store personal files on a removable drive? Or is it also vulnerable to infection when you plug it in?]]></description>
<guid isPermaLink="true">http://www.dslreports.com/forum/remark,13482076</guid>
<pubDate>Tue, 24 May 2005 10:48:58 EDT</pubDate>
</item>

</channel>
</rss>
