Justice Dept. Names ZeuS Trojan Author, Seizes Control of P2P "Gameover" Botnet
tsu doh nimh (609154) writes "The U.S. Justice Department announced today an international law enforcement operation to seize control over the Gameover ZeuS botnet, a sprawling network of hacked Microsoft Windows computers that currently infects an estimated 500,000 to 1 million compromised systems globally. Experts say PCs infected with Gameover are being harvested for sensitive financial and personal data, and that the botnet is responsible for more than $100 million in losses from online banking account takeovers. The government alleges that Gameover also was rented out to an elite cadre of hackers for use in online extortion attacks, spam and other illicit moneymaking schemes. In a complaint unsealed today, the DOJ further alleges that ZeuS and Gameover are the brainchild of a Russian man named Evgeniy Mikhailovich Bogachev, a.k.a. 'Slavik.'"
And where one compromised Windows machine falls, two more will arise to take its place.
Because, you know, the NSA et al are doing just as much hacking as the black hats are.
At which point, one must assume they'll continue to use this botnet for their own purposes, and not simply dismantle it.
Why give up an established spy network?
Lost at C:>. Found at C.
Ah, the old "security through schizophrenia" argument.
FTFY: More of a valid "what you can't touch can't harm you" argument as hosts cut the ability to talk to botnet servers or their slaves (or them talking back to "mama/queenbee/queenant for orders also).
Since the government have control of all those computers now, would it be ethical for them to go in and actually install the patches to stop them being easily becoming victims next time around?
Where to get help with APK hosts file
Just have to put this out there, but now that the government has taken control, how much do you want to bet the NSA will use this opportunity to spy? Even if they do not use Zeus long term, they could use it to install their own software on millions of PCs that are already infected.
Who are "they"? The voices in your head?
Meanwhile "praying the rosary" is proven 2X more effective at preventing malware than anything you ever came up with.
Go away, Kowalski, you're fucking crazy.
Learn to read (get on topic too) http://yro.slashdot.org/commen...
No, the entire Botnet will be controlled by the NSA now. After all, they will need more BlackOps money if the White House cuts their "legit" funding...
You ought to get yourself on of those "Hackers hate this guy. <insert your nearest city name> mom foils Zeus trojan wit this ONE SIMPLE TRICK!"
According to this article: http://www.bbc.co.uk/news/tech... the C&C servers will be replaced by new ones, so there is only a 2 week window until the network is back up and running.
They obviously do having downmodded his post for no valid technical reason + troll offtopic afterward http://yro.slashdot.org/commen...
Maybe that's why I've had no more notices to appear in court the last couple of days.
The magistrate was getting pissed off telling me to go away!
Well, he was making money and was pro-freedom so he would probably be held up as a hero in the US too.
Additionally, quit projecting & learn to read (the subject line here) http://yro.slashdot.org/commen...
I was under the impression the NSA hired these people to make the botnets to harvest data. Once the NSA is done using it or are near exposure they dump everything on the person they hired and place the blame there.
Yeah, cause he helped the American people by... oh, wait, he's just a straight-up villain...
Peter predicted that you would "deliberately forget" creation 2000 years ago...
If you had told someone 25 years ago that criminals in Russia try to steal your ID for profit while in the USA the state tries to invade your privacy to ferret out dissidents...
We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
APK, ALL your posts are ALWAYS offtopic, that is, until we start a "Kowalski is batshit insane" thread. Then they'll be "Exhibit A".
He pointed out hosts and Zeustracker which works. You're offtopic trolling.
You'd have been right. ;-)
Lost at C:>. Found at C.
I'd probably have been asked whether I got that the wrong way 'round, rather.
We used to have a Bill of Rights. Now, with the rights gone, all we have left is the bill.
ANDROID (yes, it's a Linux with Dalvik/JAVA too no less), right? It gets infested + infected almost daily!
And yet, you'd still have been right. :-P
Lost at C:>. Found at C.
Fact supports apk. How's apk offtopic? You are. He points out ZeusTracker + HOSTS that stop ZEUS botnet clientside (stopping you from getting infected or IF you are infected, it won't allow the botnet slave client to talk back to its commanding C&C Servers).
MalwareBytes' hpHosts recommends APK Hosts File Engine as "best of breed" @ TOP of their site
Lets strap the perps to heavy chair and allow all the techs that have to fix this shit to take turns beating their hands with hammers.
THIS stops ZEUS cold (ZeusTracker + HOSTS) http://yro.slashdot.org/commen...
ZeusTracker + HOSTS http://yro.slashdot.org/commen...
Botnet is still running and at large.
You also refuse to answer how apk's off topic: Apk validly points out ZeusTracker + hosts which stall Zeus.
Panos Koutsouvelis, a lawyer ÃZÃZÃZ½ÃZà ÃZsÃZÃ...ÃÃfÃZÃ...ÃZÃZÃZÃZÃ, has written a blog spot about this topic.
Why aren't they going after terrorists? We all need to sacrifice to defeat terrorism, and if it means compromised systems and stripped bank accounts, well, that is the price we all have to pay.
I am not a robot. I am a unicorn.
Custom hosts files + ZeusTracker http://yro.slashdot.org/commen...
What the fuck is wrong with you? You didn't put a P.S. on your post.
GNAA has compromised APK. FIND THE LITHIUM PILLS!
OR anyone that uses a custom hosts file, if they use this source for that https://zeustracker.abuse.ch/m...
* They're a VERY IMPORTANT SOURCE FOR DATA IN THE SECURITY COMMUNITY IN THIS CAPACITY vs. Zeus!
(They track the variants of this botnet (ZEUS, Citadel, IceIX, KINS, etc.- et al))
APK
P.S.=> Of course, ZeusTracker's NOT the only source for data for custom hosts files under the sun - & ('shamless plus') of course, THIS program (by "yours truly") gets you all the rest:
APK Hosts File Engine 9.0++ 32/64-bit:
http://start64.com/index.php?o...
(Details of hosts' benefits enumerated in link)
Summary:
---
A. ) Hosts do more than AdBlock ("souled-out" 2 Google/Crippled by default) + Ghostery (Advertiser owned) - "Fox guards henhouse", or Request Policy -> http://yro.slashdot.org/commen...
B. ) Hosts add reliability vs. downed or redirected DNS + secure vs. known malicious domains too -> http://tech.slashdot.org/comme... w/ less added "moving parts" complexity + room 4 breakdown,
C. ) Hosts files yield more speed (blocks ads & hardcodes fav sites - faster than remote DNS), security (vs. malicious domains serving mal-content + block spam/phish & trackers), reliability (vs. downed or Kaminsky redirect vulnerable DNS, 99% = unpatched vs. it & worst @ ISP level + weak vs FastFlux + DynDNS botnets), & anonymity (vs. dns request logs + DNSBL's).
---
Hosts do more w/ less (1 file) @ a faster level (ring 0) vs redundant browser addons (slowing up slower ring 3 browsers) via filtering 4 the IP stack (coded in C, loads w/ OS, & 1st net resolver queried w\ 45++ yrs.of optimization).
* Addons are more complex + slowup browsers & in message passing (use a few concurrently - you'll see)
** Addons slowdown SLOWER usermode browsers layering on MORE - bloating memory consumption too + hugely excessive CPU usage (4++gb extra in FireFox https://blog.mozilla.org/nneth... )
... apk
Trying to suppress your posts on hosts and zeustracker for protecting yourself online against this threat easily. What is wrong with these idiots?
Better get your "hooked on phonics" remeidial reading lessons out again troll. See subject and learn to read.
They're 1 of 5 types of people (bank on it):
1.) Advertisers
2.) malware makers
3.) botnet herders
4.) webmasters
5.) An INFERIOR competitor (e.g. - AdBlock, Ghostery, & RequestPolicy)
* Doesn't 'take a brain' to realize THAT much - after all: THEY'RE THE ONES WHO GET "HURT" by it... problem is, per my other post to you? THEY have been hurting others bandwidth/speed, secuirty, & more for DECADES...
Funniest part is that those technically unjustifiable downmods are "the best they got" but they certainly CAN'T get the better of me disproving my points on hosts files' mulitiple nigh ubiquitous value to end users...
APK
P.S.=> Think about what I just said - you'll "get it", fast... apk
Especially that obese druggie slob "weev" (ugly bastard, no wonder he's pissed @ life - look @ him, for Pete's sake).
From what I understand, those LOSERS like to fuck around here on /. - I'd love to meet one face to face/mano a mano, IF they tried that shit on me.
ANY IDIOT can be an asshole & destructive... they don't seem to understand that THAT makes them nothing more than losers. It takes a REAL man to create for "the absolute good" if possible.
(Simply since I absolutely TRULY hate little fucks like them (like you have NO idea) - they're not men: They're punks... almost as bad as malware makers in general).
APK
P.S.=> IF anyone needs "lithium pills", it's that grotesque obese drug addicted characature of a human being, "weev" the wussbag... apk