Slashdot Mirror


Interview with a Botmaster

An anonymous reader writes "The Washington Post is running a fascinating feature profiling a couple of botnet operators who make thousands of dollars each month installing adware on machines they infect. This is by far the most detailed examination of this issue I've seen so far -- and includes an interview with the CEO of 180Solutions, as well as interviews with some of the botmasters' victims. From the story: 'Most days, I just sit at home and chat online while I make money,' 0x80 says. 'I get one check like every 15 days in the mail for a few hundred bucks, and a buncha others I get from banks in Canada every 30 days.' He says his work earns him an average of $6,800 per month, although he's made as much as $10,000. Not bad money for a high school dropout.'"

57 of 291 comments (clear)

  1. Disgusting by PunkOfLinux · · Score: 5, Insightful

    This is sick. This is a terrible misuse of the internet. People installing this sort of software on other peoples' computers should be shot on sight - or connection. There needs to be a removal of the incentive for them - such as cutting the money they would receive down to almost nothing.

    1. Re:Disgusting by ooze · · Score: 2, Interesting

      Well, you need those kind of people. Those kind of people are the backbone of our society. Prolific tools, with no own means of judgement. As the guy said for himself at the end of the story, he wants to join th army. The kind of people shady companies and crime syndicates and sects are relying on and exploiting to fuck with people are the same kind of people governments, "good" corporations and churches are relying on to fuck with people and exploit them.

      If I could I would come up with a nice Team America Dick/Pussy/Asshole imagery. But well.

      --
      Just because I can imagine doing a hippopotamus, doesn't mean I'd like to do it.
    2. Re:Disgusting by gwiner · · Score: 2, Insightful

      It's the propensity of churches to try to "save" or convert someone to their viewpoint, with little apparent tolerance for other perspectives that leads many to see some religions as manipulative and exploitative. While I realize outreach is central to the core mission of many religions, I think it's easy to see how that mission could be perceived as overbearing and controlling.

    3. Re:Disgusting by theapodan · · Score: 3, Funny

      So then slashdot is a religion?

  2. Empty life by tomjen · · Score: 5, Insightful

    So he sits home and chat all day? that sounds like a pretty empty and dull life to me.

    I would not mind not having to work for the money, but i would properly do some programming or simular nerd activites.

    Just sitting and chatting is okay, but not allday everyday.

    --
    Freedom or George Bush
  3. Torch and Pitchfork by DSL-Admin · · Score: 5, Interesting

    I see a mod of "monster" hunters in this guy's future. --on the other hand, that's a nice chunk of change per month.. Oh, Wait... I've had to remove that Ad-Ware from customer machines... He's a witch. BURN HIM!!!!

  4. Actually quite bad for a criminal by Opportunist · · Score: 4, Funny

    Selling crack to highschoolers he could make a multiple of that.

    --
    We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
    1. Re:Actually quite bad for a criminal by 1u3hr · · Score: 3, Insightful
      suggest you go read Freakonomics, where they tackle the myth of crack-dealers earning lots and lots of cash.

      And we only have the "botmaster's" word for the thousands per month he supposedly earns. Rule #1: Spammers lie.

      That he agreed to be interviewed shows he enjoys the attention (though he perforce remains anonymous). Who knows how much he really earns? (And does he report this to the IRS -- that's how they got Capone -- no need to write special laws if they're breaking old ones.)

  5. Real reporter writing about security by gruntled · · Score: 4, Interesting

    I'm frankly astounded that no other major newspaper has a guy on the computer security beat full time, though technically I think Brian Krebs is attached to the Post's Web site. In any event, I think Krebs is absolutely the best reporter writing about computer security in the mainstream media today. At least since I stopped :-).

  6. Anonymity? by avij · · Score: 5, Funny

    The young hacker, who has agreed to be interviewed only if he isn't identified by name or home town,...

    From the attached photo: LOCATION: Roland, OK

    "To tell the truth ... I'm sorta surprised they haven't caught me yet," he says.

    Oops.

    --

    Follow your Euro bills at EBT
    1. Re:Anonymity? by ettlz · · Score: 2, Funny

      Now why did that remind me of (from SNPP's capsule for 2F06):

      Jones. Tonight on "Rock Bottom", we go undercover at a sex farm for sex hookers.
      Farmer. I keep telling you, I just grow sorghum here.
      Man. Uh huh. And where are the hookers?
      Farmer. 'round back.
      Oops.
    2. Re:Anonymity? by kjamez · · Score: 3, Interesting

      not that this is on or off topic, but i was once arrested in roland, ok (not using a signal escalated into a 'zero tolerance' law violation) ... dirty little town of 1500 or so people, 13 fully-loaded police cars, and using a double-wide as their community jail/court/police station. seems like ONE of those over zealous police officers would know this guy ... or IS this guy, for that matter ...

      --
      you can't have everything, where would you put it?
  7. There is a victim by Debiant · · Score: 3, Insightful

    It's not victimless crime.

    Just think if you're running mon & pop business and your daily earnings depends on PC that is infected.
    Also, how do you explain that XXX icon's are popping up on your desktop to wife who uses same computer or is very religious?

    I can think multiple ways what he does could hurt people in their private life or business.

    Also, doesn't infecting one computer also open door to others too? What's stops from somebody else taking over already installed exploits and take with him/her stuff like passwords etc.?

    On the other hand, some plame does go to MS and major tehcnology players. These kind of problems shouldn't be totally unexpected. Either there should be somekind of requirements akin to drivers license to go to Net or solutions should be such that no highschool dropout could hack himself in when he likes to.

    --
    Nobody knows the trouble I've seen, nobody knows has the trouble seen me, even I sometimes wonder why I write these line
  8. Botmaster Dirtbag by FishandChips · · Score: 4, Insightful

    It is a fascinating article, a kind of anti-CEBIT that must be played out in thousands of trailer parks and down-at-heel developments all over the world. No real surprises, though. Organized criminal activities are probably the same everywhere: long periods of boredom punctuated by brief spurts of intense activity, and all supported by lies of the "Naturally I wouldn't sink this low if my victims weren't so dumb they deserved it" kind.

    I'd still like to see the CEO's of the top six IT companies put on a public platform and made to answer some tough questions. Like, with all their personal billions and access to hundreds of billions in corporate funds, what are they actually doing to track down guys like these and nail them? So far as I can see, the answer is "As little as we can get away with". And the Feds seem to be used as a get out: we've handed the matter over to the Feds so there's absoutely nothing we can do, nudge nudge wink wink, wanna buy Symantec Internet Security cheap to you squire?

    Until the IT industry grows up enough to start dealing with some of the consequences it has created, I don't think it deserves anyone's support. And meanwhile Botmaster Dirtbags everywhere will continue to flourish. Just my two cents.

    --
    Las qué passoun
    tournoun pas maï
  9. botmaster? by Afecks · · Score: 5, Insightful

    is that what we are calling script kiddies these days?

  10. Hey 0x80, give my regards to bubba! by Anonymous Coward · · Score: 2, Informative
  11. To sys and network administrators by Cron0s · · Score: 5, Funny

    I kill botmasters for money. Quick and Discrete. Give target's name and credit card number (with sec. code) on the thread to order.

    1. Re:To sys and network administrators by SmurfButcher+Bob · · Score: 2, Funny

      Dear sir:

      We are neither interested in "Quick" nor "Discrete", and we regret that we are not interested in your services at this time. However, if you wish to refer any of your associates who specialize in "Slow" and "Highly Visible", we'd be most pleased to hear from them.

      --

      help me i've cloned myself and can't remember which one I am

  12. Stupid movie quote fits right in by 77Punker · · Score: 5, Funny

    You're just jealous because I've been chatting online with hot babes all day!

    1. Re:Stupid movie quote fits right in by ggy · · Score: 4, Funny

      Yeah, plus they sent over exe pictures of themselves so I could take a look! And now I get relevant picture ads as well!

  13. Two questions that need to be asked by SmallFurryCreature · · Score: 3, Insightful
    Of two people.

    The first, Bill Gates, when are you going to produce a secure OS that does not get owned in the millions by the first kiddy who tries?

    The second to Joe "Windows == computers" Average, when are you going to treath your computer like you would treath your house or car and lock it properly and not put all you valuables on the seat of your convertable with the top down?

    Botnets exist for two reasons, lousy software and the people that use it. Not very suprising the article totally failed to touch on this issue. I wonder how much MSFT spends in advertising at the wasinghton post.

    --

    MMO Quests are like orgasms:

    You may solo them, I prefer them in a group.

    1. Re:Two questions that need to be asked by dc29A · · Score: 2, Insightful

      Botnets exist for two reasons, lousy software and the people that use it.

      I wouldn't blame it to "lousy" software. The Windows NT family OS has a good security architecture. Problem is not software, but the way people use it. Microsoft is to blame here big time because for ages they pretty much left everyone and their dogs use the PC with root privileges AND they have a boatload of useless services turned on by default.

      IMO the botnet plague is entirely a human issue:
      - Microsoft encourages people to use their PCs as administrators.
      - Microsoft doesn't warn users of the dangers of using PCs as administrators.
      - Microsoft lets many powerful services run by default (Remote Registry anyone?).
      - Lazy n00b programmers write code that only works as administrator.
      - Stupid people clicking on "OMG YUR PC IS TOO SLOW!!!222!!~!oneone!" flashing adds, or smiley emoticons! Not to mention they open every possible attachment they receive. Even if it's from strangers.

      I run XP atm, no firewall turned on (well router is), no anti-virus and no anti-spyware. I've been running with this setup on Windowns 2000, XP and 20003 family computers for ages, I never got infected with anything. Windows is not to blame for poor computer security, the geniuses at MS for letting people run as root are.

    2. Re:Two questions that need to be asked by IamTheRealMike · · Score: 2, Insightful
      Yeah because everybody knows that Linux and MacOS never need online security updates.

      Oh, wait. They do. And in fact on Linux/MacOS the user has to manually trigger a software update (at least in most versions) whereas Windows has done it automatically for years. Yet these people just don't apply the updates.

      If I had a dollar for every time I've seen somebodies computer go "Beep! Please click me so I can install updates!" and have them ignore it saying something like "Oh yeah it says that all the time, so annoying, can you make it stop that please?" then I'd be making as much as that guy was.

      Botnets exist for two reasons, lousy software and the people that use it.

      No, they exist because ignorant fuckers like this guy are completely lacking in morals or empathy. Look at him - he's saying he'll get out of the business because he's scared he might get caught, not because him and people like him made screwed over millions of people and are universally hated. Pathetic. I feel sorry for the guys parents and wonder what they did wrong.

    3. Re:Two questions that need to be asked by timeOday · · Score: 2, Insightful
      I feel sorry for the guys parents and wonder what they did wrong.
      0x80 himself explains his rationalization:
      "All those people in my botnet, right, if I don't use them, they're just gonna eventually get caught up in someone else's net, so it might as well be mine," 0x80 says.
      I couldn't help but notice, this is precisely the argument google uses to justify censoring their web searches in China: "if we don't do it, we'll just lose the market to somebody who will. So we might as well make some money."
    4. Re:Two questions that need to be asked by cyberworm · · Score: 2, Informative

      in 10.3 and 10.4 Software Update automatically lets me know when and what updates are availible for all Apple software on my machine. If I decline and update of any kind for whatever reason, it lets me know again 12 hours (approx) later, untill I finally update. I wouldn't say your characterization is true of "most versions" of OS X. Can't say for versions or Linux. And why you're grouping OSX and Linux together anyways just seems silly.

    5. Re:Two questions that need to be asked by ScrewMaster · · Score: 4, Funny

      I feel sorry for the guys parents and wonder what they did wrong.

      They had sex. Next question.

      --
      The higher the technology, the sharper that two-edged sword.
    6. Re:Two questions that need to be asked by minus_273 · · Score: 2, Informative

      "And in fact on Linux/MacOS the user has to manually trigger a software update"

      you've never used a mac have you? it is hard not to notice the SECURITY UPDATE icon BOUNCING like crazy on the dock

      --
      The war with islam is a war on the beast
      The war on terror is a war for peace
  14. There's one way that will get him for sure by rworne · · Score: 3, Interesting

    $6800-$10000 per month income. As checks. I'd bet that:

    1. None of these companies are withholding federal and state taxes and social security
    2. I'm also pretty sure he's not getting 1099'd either
    3. He does not report this money as income

    The IRS would love to get their mitts on this guy. Any income (including illegal income) is still taxable income to them.

    --
    I tried every decent and legal way I could think of to resolve the issue w/the business before I rented the chicken suit
  15. The "botmaster" kid by csirac · · Score: 4, Interesting

    Sounds like he's painted as someone in an economically depressed area with few opportunities, using his skills to make a lot of money for himself.

    Which would be the same as with a lot of criminal activities, it seems.

    By the end of TFA he's wondering why he hasn't been caught yet, waiting for his little game to blow up in his face. Then talking about joining the Army so he can get into college and make a sustainable future for himself.

    Interesting perspective. Not a bad article.

    1. Re:The "botmaster" kid by csirac · · Score: 2, Insightful

      The guy is still living with his parents and he buys a new laptop? Hasn't the guy heard of priorities?

      What are you getting at? That he should move out of home? That's your priority, but why do you think it has to be everybody's? We don't know this character or his circumstances. Who says he isn't paying his parents rent/board? What's wrong with that?

      He's also a high school dropout (read: shot himself in the foot in terms of getting a -real- job).

      This is true. But we all make mistakes. What's your point?

      Two minutes? Ever heard the saying 'idle hands are the works of the devil?'

      He spends his time creating new viruses, finding new exploits for himself and his friends, covering his tracks, seeking out new zombie PCs or at least creating the tools to do so. I highly doubt this work is also completed in his daily 2 minute routine.

      No fucking wonder he can't get a decent job.

      So, it's that simple is it? You have all the answers?

      You think if he just buckled up and tried harder at school he'd get something better than a meaningless dead-end job in his home-town (forget about even landing a job that paid the same!)?

      Life isn't that fair. Granted, people of real inspiration can work their way up from nothing with honesty and integrity. They make good books and movies.

      For the rest of these mediocre people living in small towns with few opportunities, the apathy is infectious.

  16. The worst thing... by catdevnull · · Score: 3, Funny

    The worst thing is that Microsoft is going to make m/billions more by charging $49.95 a year from every freaked-out Windows user who reads this article and it still won't do a damn thing to help them.

    --

    I might know what I'm talkin' about, but then again, this is Slashdot...
  17. What about the money? by lbft · · Score: 3, Insightful

    Whilst I don't like scum like the guy interviewed in TFA, if there was no financial incentive the professional botmasters would have to, you know, actually earn a living somehow other than screwing people over.

    It's a cop out for the companies whose software is being installed to say, "Hey! Look, guys, honestly, we don't know anything about it!" They don't really care.

    It's even more of a cop out for the companies whose ads are running on the adware that's being used - "We didn't know it was going to be showing without users' consent!" But they don't care either.

    If companies showed some sort of sense of ethics this wouldn't happen. HAH! There's no room for ethics in business today.

  18. Absurd by ereshiere · · Score: 4, Insightful
    So the New York Times (don't pay for the article) busts some kid for stripping online, but the Washington Post won't bust this idiot?

    One has little impact on anyone but himself, the other causes headaches for people all over the world.

    Some priorities!

  19. Justifications never change by NorbrookC · · Score: 3, Insightful

    There are times when I wonder why some people think it's "cool" to pervert technology. Phone Phreaks, crackers, virus writers, and now botnets. I've seen them for almost 25 years, and each generation uses the same lame justifications for their behavior. "It's easy money." "It's free." "People are dumb." "If I didn't do it, someone else would." etc., etc., etc.

    It isn't cool, and it's not a "victimless crime." People who get infected are victims, because they have software they don't want on their computers, risk identity theft, suffer through poor performance with their computers, and end up having to pay someone to help them. Companies and businesses lose, because they have to spend money and time fixing problems that could be spent doing something productive. We all are victims, since each one of those botnets create problems for us by taking useful services off-line through DDOS attacks, or forcing admins to block traffic from various IP's - and we might just be in that batch of blocked IPs. Even the ad company's are getting ripped off.

    I found this quote from the article ironic: "It sucks, too, because the companies will shaft you, and there isn't a lot you can do about it," says Majy, 19, who claims to have had as many as 30,000 computers in his botnet."

    He's complaining about being ripped off by the people he's trying to rip off! Excuse me while I devote a nanosecond to feeling sorry for him. They need to get a clue. Yeah, maybe with a real education and job you won't make 10 grand a month now and then. But, you also don't have to worry about people crashing through your door, and spending a few years getting pwned by the guys at the prison.

  20. The Articles by fdiskne1 · · Score: 2, Insightful

    These articles are just so wrong on so many levels. First the accuracy. "Adware also known as spyware"? Now I know there are similarities but you can't say they are one in the same. Many other small inaccuracies. Then you have the victims who admit they would rather buy a new computer than fix the one they have. Come on! It's just your OS! Reload it! And they don't want to be bothered with learning how to secure their computer. Then the sysadmin who is notified that he has 10,000 machines on his network infected and he doesn't know what to do about it. And finally are the people involved in the underbelly of the botnet/spyware scene. The guy lets cigarette ashes drop onto his laptop and has to "gently kick away" a dog with matted fur. What a loser. I don't care how much money he makes. I'd much rather make my own modest income which is enough to live in a nice little house. Then the way the people involved treat each other. I swear this article was about all the different ways they screw each other. Then 180 Solutions. These are the ones to actually collect the money from the advertisers. At least they could be honest in what they do. Wait, no they couldn't. If they were honest, they'd be out of business. It was an entertaining and fascinating read. But all I can do is shake my head. Wow.

    --
    But why is the rum gone?
  21. No incentive by MrNougat · · Score: 3, Insightful

    So the botnet guy is getting his money, and when someone has to call you to clean up, you get paid, too. Where's the real incentive for anyone with technical knowledge to make real advances in protection against these kinds of intrusions?

    Admission: I am also the guy who gets paid to clean up adware, among other things. Adware cleaning is quite the profitable business, and there's little risk to it, since anything that goes wrong can be attributed to the malicious software, which the client is already embarrassed about having.

    --
    Web 2.0 == Giant Blogspam Circle Jerk
  22. Shut down the enablers! LIke www.180solutions.com by ylikone · · Score: 3

    Instead of going after every "botmaster", lets unite as geeks and nerds for justice and take down the enablers of these cybercrimes. Starting with www.180solutions.com

    --
    Meh.
  23. One Bad Apple. . . by RossumsChild · · Score: 5, Funny

    From TFA:

    0x80 says he got into writing viruses by accident after logging onto an AOL chat room named "Lesbians Only."

    "Someone sent me a virus that made it so that every time I typed anything on the keyboard it would pop a message up on the screen that said, 'I'M [expletive] GAY!'" 0x80 recalls. [. . .]

    After that, 0x80 became obsessed with computer viruses and dedicated nearly all his time to tinkering with them.

    So if any of you know the moron who spent his free time 7 years ago distributing comical viruses via lame AOL chat rooms. . . give him this message: the tech community which spends disgusting amounts of time fixing the problems your prodigy generates would like a word with you.

    Come alone.

  24. Re:The picture has been removed by assantisz · · Score: 2, Informative

    I just verified the location data in those two jpegs. I dragged the picture on my desktop (using Mac OS X) and clicked on 'Get Info'. E voila: Roland, OK. The info is still there.

  25. Re:The picture has been removed by turtlexit · · Score: 2, Interesting

    It's still available on MirrorDot http://www.mirrordot.com/stories/98b92267951eee741 f97b5b169fd1236/index.html and does indeed contain the location... SLUG: mag/hacker DATE: 12/19/2005 PHOTOGRAPHER: Sarah L. Voisin/TWP id#: LOCATION: Roland, OK CAPTION: PICTURED:

  26. The appeal of it all by Odocoileus · · Score: 2, Interesting

    Not that I would ever do this, but am I the only one who finds the whole thing interesting? Who hasn't watched a movie with some high rolling criminal dude and thought, on some level, weeeee. Botnets are the perfect area for the average person to enter the world of illegal profit with a minimum of hassle. Be your own crime boss! And nobody dies! No children get sold drugs! This is a chance to make money, and get that special little naughty feeling, with very little moral violation. I just point this out to help emphasize the overall difficulty on stopping this sort of behavior, of course.

    --
    ...
  27. Re:The picture has been removed by 1u3hr · · Score: 3, Interesting
    Just get the jpeg showing the laptop keyboard. It's full of meta tags. And most interesting:

    SLUG: mag/hacker
    DATE: 12/19/2005
    PHOTOGRAPHER: Sarah L. Voisin/TWP
    id#: LOCATION: Roland, OK
    CAPTION:
    PICTURED: Canon Canon EOS 20D
    Adobe Photoshop CS2 Macintosh 2006:02:16 15:44:49 Sarah L. Voisin
    And Google for the town; pop 3000. Any flatfoot could find him in an hour.
  28. Re:The picture has been removed by ph4s3 · · Score: 2, Informative
    Anonymous Coward wrote on Saturday February 18, @08:06AM
    The picture is no longer linked from the article, but with the post here the damage has been done.
    Quite right. The original article no longer links directly to the photo, but thanks to its removal I was motivated to find it and others with the aid of the Washington Post's own search tool.

    Check out the Washington Post's multimedia search results for roland, ok. The first three appear to be from this article and all indicate a location of Roland, OK in the search results.

    You can see the pictures themselves
    The metadata on the photos appears to be intact so I have no reason to doubt that the location information in the caption of each photo is accurate as well, although I suppose it could be disinformation or the place the photographer downloaded them or whatever. I had intended to display the metadata (EXIF picture/camera/exposure info + IPTC captions, etc) for each of the files here, but you'll have to go look at it yourselves because I can't quickly find a utility to export all of it to a nice text file. Even the small thumbnail photos still embedded in the story have the caption info showing the location, so just go expolore if you're looking for it.
  29. Re:The picture has been removed by Pete · · Score: 2, Interesting

    1u3hr:

    And Google for the town; pop 3000. Any flatfoot could find him in an hour.

    Not that anyone on slashdot really needs this, but here's the town on Google Maps.

    From the story:

    He lives with his folks in a small town in Middle America. The nearest businesses are a used-car lot, a gas station/convenience store and a strip club, where 0x80 says he recently dropped $800 for an hour alone in a VIP room with several dancers.

    Gee, I wonder if we can find any user-car lots, gas stations or strip clubs in Roland, OK? Hmmm....

    Well, here's the strip clubs and here's the used-car lots and here's the gas stations.

    And ya know what I reckon? I reckon the asshole's house is probably right about here . Given the businesses described above, I'm guessing somewhere very close to the intersection of Broadway and South Main St.

    He's described in the article as 21, which might be a decent starting point. Anyone in the vicinity feel like going through the local highschool's yearbook for the guy? Note that, as the story helpfully mentioned, he's a highschool dropout, so that might even make it even easier.

  30. Total Idiot by Thanatopsis · · Score: 2, Interesting

    Well his details have been outed by the meta content of the jpeg. He's just dumb. Why?
    "He claims he doesn't care but then confesses that he dedicates quite a bit of time to covering his tracks. "I do stay up very late each night trying to make sure nobody is going to kick in my front door . . . If I do [get caught], I'm not all that worried. I've got enough money. I can always get a good lawyer."

    I've got enough money? Nope as your money is proceeds from a criminal enterprise, it is most certainly going to be frozen as restitution to his victims. Even if he makes $10,000 per month, a defense of these sorts of crimes is going to cost several hundred thousand dollars. I doubt very much this guys is saving much money. He just doesn't know how much these things cost. My prediction for this guy. 5 years in "pound me in the ass" federal prison.

    Young and stupid.

  31. Funny, with the presumed intelligence level... by Red_Chaos1 · · Score: 4, Insightful

    ...of the people who frequent /., a lot of you sure seem to be ignorant. How many of you actually completed reading the article? You're quick to talk all kinds of smack about this guy, what a douche he is, etc. but it seems nobody has read near the end of the article where he talks of coming to realize that what he's doing can't last forever, and isn't really all that great, and that he is actually looking at making something of himself instead of doing the crap he currently is. While I don't like what he's been doing, I do applaud his self realization, and the fact that on his own he is admitting it's not great, and actually voices aspirations to do better things, to gain a little discipline. The knowledge he has now and uses to do bad could just as easily be used to do good, and be every bit as lucrative and exciting for him.

    Just a little advice folks, as with anything else, be sure to have the whole picture/story before going off half cocked, because it makes you look as dumb as the kid in the article sounds.

    1. Re:Funny, with the presumed intelligence level... by Pete · · Score: 2, Insightful
      How many of you actually completed reading the article?

      Er, well, I did. I don't know why anyone who started reading the article wouldn't finish it. It's not long and it's quite well-written and interesting.

      but it seems nobody has read near the end of the article where he talks of coming to realize that what he's doing can't last forever, and isn't really all that great, and that he is actually looking at making something of himself [...]

      Yeah, I read that bit too. And just like most of the other people reading, I went "Yeah, right." If he does try to join the army, he'll keep his botnet income going right up until he leaves for basic training. Talk (about wanting to stop) is cheap. About all this section did is make me realise that he wasn't a complete sociopath, and might have some potential of being a decent guy one day.

      Tell you what, 0x80, if you're reading - a great first step would be to remove all the spyware/adware from the machines you've broken into, and then patch the buggers for the hole you used to get in. Or at the very fucking least change the user's default login background to leave a brief apology message and tell them to get their system wiped and reinstalled (with Windows Update auto-enabled).

      Anything less is just worthless talk.

      The knowledge he has now and uses to do bad could just as easily be used to do good, and be every bit as lucrative and exciting for him.

      ...What "knowledge"? Some minor scripting and (possibly) Windows/C programming experience? I'm sure he knows enough to be useful in a generic PC/networking support job, but he's going to have trouble doing more than that with no real IT work experience, no college degree and (apparently) without even having graduated from highschool.

  32. Spam forums lying low today by Animats · · Score: 3, Informative

    The usual places where you rent botnets, Specialham and Spamforum are down today. When the heat is on, they tend to go offline, but come back in days or weeks.

  33. Re:He just made a big mistake by Saib0t · · Score: 3, Insightful
    all the information is the following:
    - 21 years Old
    - Lives in Roland, OK
    - Smokes cigarettes. Article mentions Marlboros but that's not what fills his ashtray (cigarettes with a white butt)
    - blond hair (at least blond looking hairs on his arms)
    - hair that covers his eyebrows
    - lives with his parents in a "brick rambler"
    - Mother is "really Christian"
    - has a dog ("A small dog with matted fur")
    - "accent a slurry of heavy Southern drawl and Midwestern nasality"
    - is skinny ( "wiry frame", "tall and lanky", sez the article )
    - high school dropout
    - was an AOL customer 7 years ago
    Roland has pop ~3000. Easy as hell

    The guy really wants to get caught if he leaves that much information be published...

    Anyone feels like saying him "hello", couldn't take more than 2 days to find him ;-)

    --

    One shall speak only if what one has to say is more beautiful than silence
  34. Re:The picture has been removed by Pete · · Score: 2, Interesting
    The guy really wants to get caught if he leaves that much information be published...

    It's not too surprising in some ways - I suspect the journalist behind the story didn't think anything of including a few splashes of what he thought to be completely generic local colour (eg. by mentioning the nearby businesses). But it all starts caving in around that one huge mistake of revealing the town in the image metatags.

    If it wasn't such a small town, it might still be too difficult to find the guy. But with the above info, as you say, even a dedicated ordinary person should be able to find him with a bit of detective work. The police of course would find him much faster - if they could be motivated to look :-).

    And who knows? The journalist could have dropped in a few bits of irrelevant bullshit just in case, to mislead any pissed-off geek detectives :). I have no idea how to guess if that's likely or not. The only thing I'm pretty damn sure about is that the 0x80 guy would have talked up his age a year or two to make himself 21.

    Maybe it's just me, but I'm having trouble imagining a kid spending three (or more, depending on when exactly he dropped out of school) years living with his parents in a tiny little town like that, doing nothing more than IRCing and script kiddie "work". One or two, sure. Three or more... hm. How fucking depressing.

  35. Re:We need to start thinking like Vegans ... by zenwrench · · Score: 2, Funny

    Yeah, you're right of course ... And actually I do remember the first few links being relevant ... I suppose my initial memory of the event was obscured by the porno just a few links down ... damn you porno, damn you

  36. Re:The picture has been removed by Pete · · Score: 4, Interesting

    Okay, after a double-check I think I stuffed it up. Second try - I think Cheyenne Gentlemen's Club is the strip club, LP Bottle Express is the gas/convenience store (which didn't show up when I searched for "gas station", but did for just "gas" - and the name sounds like a convenience store), and Blue Ribbon Chevrolet is the used-car place.

    If so, he'd be located about here . Just about halfway between the strip club and gas station on one side, and the used-car place on the other.

    I think this fits much better than my previous attempt - which was way closer to Muldrow than Roland, and too close to a "Main" street that'd have lots of other businesses.

  37. Botmaster 0x80 by rpg25 · · Score: 2, Funny
    the hacker known online as "0x80" (pronounced X-eighty)
    Shouldn't that be "pronounced one-twenty-eight"? ;-)
  38. Could this affect other news stories? by typical · · Score: 4, Insightful

    I never thought that journalists might leave metadata in their images -- I thought that they'd have some sort of automated content management system that would take in a TIFF or whatever and spit out a JPEG of the appropriate size for the current design of the web page.

    I'm now wondering how many other news stories might have very much unintended data leaks through metadata tags in images. Possibly quite a hell of a lot.

    --
    Any program relying on (nontrivial) preemptive multithreading will be buggy.
  39. Re:He just made a big mistake by cgenman · · Score: 3, Informative

    He actually has half of his face in one of the pictures, and his mouth in another. If one were so inclined, you could splice together the two images to create something that looks like
    this.

    Not as great as a mugshot, especially with the slightly different perspectives of the two pictures, but it might do. A little reconstruction by a skilled artist, and you could have a really accurate full-face.

    He must have gone to Roland High School. Anyone want to give them a call? (918) 427-7419

    I feel bad if this kid really had been planning on getting out, but I've known people who "planned" on getting out for years and never did. And I've been cleaning spyware crap off of people's computers for years.

  40. Re:He just made a big mistake by Pete · · Score: 2, Insightful
    typical:
    Maybe if someone at the state level got pissy about computer crime. [shrug]

    Well, I think there's a couple of approaches you could take. First, from the story:

    Just a few months ago, FBI agents arrested a 20-year-old from Southern California for installing adware on a botnet of more than 400,000 hacked computers.

    Perhaps try to contact someone at the FBI? Don't they have a computer-crime-specific department yet? If you could track down the top agent that dealt with the above guy, you might at least get a pointer to the right place to call. Second, also from the story:

    0x80 has also found credentials for thousands of e-mail accounts, including dozens at ".mil" and ".gov" (U.S. military and government) addresses.

    Hmm. Access to thousands of government and military email accounts. Hello, Department of Homeland "Security"? Sounds like getting this dude would be about as useful as anything else they've ever done. :-)

  41. Is that all? by Hosiah · · Score: 3, Funny

    You didn't find out what he had for breakfast this morning?