Russian Phishers Moving to China?
Hugh Pickens writes "The Russian Business Network, an ISP and Web hosting provider based in St. Petersburg, whose client list amounts to a laundry list of organized cybercrime operations appears to have closed shop after a number of its main upstream Internet providers severed ties with the group. The disappearance of RBN comes less than a month after Brian Krebs of the Washington Post wrote a series of stories detailing the organization and history of the shadowy ISP. However, experts at anti-spam group Spamhaus say there are strong indications that a huge swath of Internet space recently established in China may soon emerge as the next incarnation of the Russian Business Network. In related news FBI Director Robert S. Mueller, III gave a speech on cybercrime earlier this week where he said that the FBI has 60 Legal Attaché offices around the world working with partners in Russia, Romania,Poland, Hungary, Italy, and Estonia, among others, to investigate international cyber threats."
I soviet China ... oh wait ...
Why UNIX?
the Russian mafia has a serious asian fetish!
Monstar L
Have all their lakes frozen over or something? Damn you global warming!
She's built like a steak house, but she handles like a bistro....
It is common knowledge in the US that one should not consume phish from China.
With phishing being outsourced to China, manufacturing being outsourced to China, Can we expect lead based paint recall phishing to come from China soon?
Support NYCountryLawyer RIAA vs People
so they move to a country that restricts what they can access on the internet?
Thats exactly what I would do if I was the ring leader of major internet crime...
Im a gamer, not a grammer major. This post is full of spelling and grammer mistakes.
Pretty soon the only large organized internet crime is going to be the government run kind.
Curiosity was framed, Ignorance killed the cat.
"And they laundered money through more than a dozen Internet gambling sites." Aren't there better ways? I mean this has been done for years and it's part of the reason the US has the $10,000 rule.
FlyingPizzas.com, for the tasteful hermit
My first wife was American. Second time around, I married a Russian lawyer. Back to eBay, I guess... How much to ship 110 pounds from China, including airholes?
The Great Firewall of China meets the Russian Phishing Pond *in* China!
Do you think this will make a noticeable difference in the amount of spam coming through?
I have to say that since 1998, I have really noticed only an increase in the amount of spam, with the only downward swings coming from changing accounts, or my ISP implementing better spam filters. I guess I shouldn't say I haven't noticed any downswings, I have noticed a return to normal levels after a week or so of getting the same spam over and over.
But I don't think we will even notice this for the week or so it takes the spam people to set up shop somewhere else.
Hopefully I didn't put any [] around my words.
According to every single one of the cidr-reports referenced by that spamhaus article, all the blocks of IPs were "withdrawn" Example: http://cidr-report.org/cgi-bin/as-report?as=AS42811
Before you mod me funny, think, perhaps I was insightfully funny?
Phishers get THEM!
I mean, phishers get THEM!
Whoops.
Either way they're screwed.
-kgj
-kgj
A notice in an office-entrance in St Petersburg reads..
Gone phishing..
"A nation that forgets its past is doomed to repeat it." - Churchill
I am not sure this would be very common, as Internet provides a great deal of anonymity. There is no way to find and eliminate competition and therefore no need to choose a don for protection. Likewise, if you are caught you are not able to rat out your friends besides the nicknames that they use to connect to IRC from hijacked machines. Maybe there is an agreement to perform hacking and DDOS hits on companies that cooperate with authorities to catch someone. But in general, cyber criminals are a bunch of independent agents that are not very organized.
Phishers moving to China? I resent that. China doesn't need foreigner phishers, they have their own!!! :p
please... let me sleep... a little more... yay, no longer annonmyous coward.
Lead-based paint? Why, that gives me an idea..
"A nation that forgets its past is doomed to repeat it." - Churchill
I know I will get modded into oblivion, but I do not care. This is precisely why I firewall the entire world (other than North America) from my server. None of the users nor myself have any legitimate contacts or interests overseas, so blocking all traffic sourcing anywhere except North America reduces the spam load by 98% and virtually eliminates intrusion attempts.
Offensive to you? Why? What legitimate need do you have to access my server? My company has absolutely nothing to interest you. Therefore, what reason could you possibly have to access my server?
Let the bloodletting begin.
Ignorance is curable, stupid is forever.
...in Panama. inetnum: 81.95.148.0 - 81.95.151.255 netname: RBNET descr: RBusiness Network country: PA admin-c: RNR4-RIPE tech-c: RNR4-RIPE status: ASSIGNED PA mnt-by: RBN-MNT source: RIPE # Filtered role: RBusiness Network Registry address: RBusiness Network address: The Century Tower Building address: Ricardo J. Alfari Avenue address: Panama City address: Republic of Panama
More than 60,000 Windows programs won't run on Linux.
You should do what you are good at.
Two things Russians are very good at: hacking and organized crime.
When combined, it's a sight to see.
So.... Block these networks. Think I got them all.
194.110.69.0/24
91.198.71.0/24
91.194.140.0/23
91.196.232.0/22
91.195.116.0/23
91.193.40.0/22
91.193.56.0/22
193.33.128.0/23
In soviet Russia, the internet crimes you!
Help Me! I'm trapped in the tubes! Oh noes! Here comes a internet!
As much as I hate (russian|chinese|korean|nigerian) spammers/botnets, I don't see how the FBI could possibly help. I know it's draconian, but I simply block off all access to my servers from a number of IP ranges I deem unfit, and that includes the aforementioned countries. Frankly, that's all the help I need.
Digital racism ? Maybe. It's not that I don't like chinese people, I just like them better when they don't harbor heinous criminals. Heck, I like white folk better when they don't harbor heinous criminals too, and I'm just as quick to ban them if they give me trouble.
It's a free internet, if people don't play nice, I have no obligation to play with them.
-Billco, Fnarg.com
Spammers and email marketers.. always looking for virgin IP Addresses.. Be nice to see someone take up the cause of investigating how IPv4 assignments are happening, the rate that they are being picked up for marketing etc.. Too many new IP blocks are coming one line only to be seen to be just used for the purposes of fresh email IP's. In the world of email marketing, I guess IP addresses are cheap :0 Are legitmate users of IP addresses going to be hurt by this practise?
Well, perhaps we will see some humor in the new wave of phishing as they will all be delivered in Chinglish.
Do you have any evidence or links that proves this? Because I would like to point out that the US has quite a large percentage of the worlds computers (and Microsoft Windows). China is obviously the biggest market for PCs nowadays, but they also prefer a cheap Linux OS.
Sure, I agree, the ownership is irrelevant for this discussion. But they're still the ones contracting the spam campaigns.
And I should of course have said blocking all of the Americas would solve my problem. Russia and Asia are obviously on the hit list as well. My own country would be enough, just like you. See, I have full sympathy for your situation.
And who do you think purchases spam advertising from these Russians? Not Russians for sure. The phishing activites are of course a different issue - but we ended up discussing spam...
Of course there's probably a link between purchasing spam ad campaigns, "financing" their bot networks, and ultimately supporting their phishing activities.