Providing Free and Editor Tested Downloads

< HOME | MAC | GEEK - WEAR | SHOPPING | SUPPORT FORUM | TOP DOWNLOADS | >
MajorGeeks.com - Chicks just love a Geek in Uniform.

Admin Tools
All In One
Android
Anti-Spyware
Anti-Virus
Appearance
Back Up
Benchmarking
Bios
Browsers
CD\DVD\Blu-Ray
Covert Ops
Data Recovery
Diagnostics
Drive Cleaners
Drive Utilities
Driver Tools
Drivers
Ergonomics
Firewalls
Game Tweaks
Graphics
Input Device
Internet Tools
Mail Utilities
Memory
Messaging
Microsoft
Misc
Monitoring
Multimedia
Networking
Office Tools
ProcessManagement
Processor
Registry
Security
System Info
Toys
Video
Macintosh
Games
News Archive
- Off Base
- Way Off Base


· Free File Camouflage 1.10
· WindowBlinds 8
· Tunebite 10.2.26201.100
· J. River Media Center 18.0.201
· Adobe Flash Player 11.8.800.88 Beta
· Claws Mail 3.9.2
· 7-Data Recovery 2.1
· Kaspersky RectorDecryptor 2.5.37.0
· Kaspersky XoristDecryptor 2.3.12.0
· MyEventViewer 1.95

· New? Start Here
· Top Freeware Picks
· Malware Removal
· Compatibility Database
· Geektionary
· Geek Shopping
· Free Magazines
· Useful Links
· Top Freeware Picks
· Folding@Home
· About Us
· Copyright
· Privacy
· Terms Of Service
· Uninstall

There are currently 3587 user(s) online:
Google, Live Search, MSN, Yahoo

YouTube

FaceBook

Twitter

RSS / XML Feed

Pintrest



Follow @majorgeeks
· Google · Yahoo · MSN


1. K-Lite Codec Pack Update
2. IObit SmartDefrag
3. Malwarebytes Anti-Malware
4. Win7codecs
5. x64 Components
6. IObit Malware Fighter
7. JetClean
8. Windows 8 Codecs
9. SpywareBlaster
10. Iobit Driver Booster
More >>

The plane! The plane! Fantasy Island airplane used to smuggle drugs after show finished (Video)

What's The Best Browser to Protect You against Malware?

Man arrested for using real $50 bill

Female fan who flipped off Noah in photo identified as Filomena Tobias

Friday Photo Bombs!

Fixing the Windows Explorer crash or freeze in Windows 7 (Updated)

NASA dumping Windows for Linux

First time setup and installation of an SSD drive

Majorgeeks updates website to new CMS and design – didn’t break EVERYTHING

Friday Photo Bombs!





MajorGeeks.com » News » December 2012 » FBI Warns of New Twist to Reveton, Citadel Malware Scams

FBI Warns of New Twist to Reveton, Citadel Malware Scams


Posted on: 12/01/2012 04:56 PM [ Comments ]


The cybercrime group behind the Citadel malware and Reveton ransomware has upped the stakes with a new extortion technique, the FBI's Internet Crime Complaint Center said today.

Reveton scams have now co-opted the Internet Crime Complaint Center with a new fake warning to users whose computers have been infected.

"In addition to instilling a fear of prosecution, this version of the malware also claims that the user’s computer activity is being recorded using audio, video, and other devices," an FBI advisory said.

Victims usually are lured to a website hosting the malware. Once Reveton has been installed, the victim's computer is locked up and a screen materializes with a warning that Federal law has been violated. The victim also sees a message that the FBI has determined that the user's IP address has accessed child pornography and other illicit content.

The victim is instructed that the only way to unlock their computer is to pay a fine via a prepaid money card service, the FBI said.

"In addition to the ransomware, the Citadel malware continues to operate on the compromised computer and can be used to commit online banking and credit card fraud," the advisory said.

Despite the fact that some victims have paid up, they quickly learn they've been scammed and their machines are not unlocked.

The FBI has warned about Reventon infections before but earlier scams did not threaten victims with video and audio surveillance.

Citadel is a constantly evolving malware platform. In October, its authors update the malware with a dynamic configuration module that allows them to inject code directly into compromised browsers in real time.

This new feature lessens the chance that the malware would be detected by security software since this would eliminate the need for update configuration files to be sent to each bot.

"This shows us that this team is really serious. Their development skills are very strong; these are not amateurs,” siad Limor Kessem of RSA Security in an interview with Threatpost.

The Dynamic Config injection mechanism keeps a botmaster from having to open external communications channels to send injection files or updates to configuration files. Once a victim is compromised, Kessem said, the botmaster can use HTML or java script  injections on legitimate banking or ecommerce pages and via a java script  popup, for example, ask a user for additional log-in or personal information such as date of birth or a Social Security number.

Citadel is an advanced platform. It updates almost quarterly with new features that indicate a level of professional development, organization and resources. It also runs on an open source model of sorts, support its own customer relationship management, support teams and user forums where issues are discussed.

In July, experts noted chatter that Citadel might be taken off the market in underground forums and updates would be limited only to existing customers.








Like it? Share it....




Comments
comments powered by Disqus

« Worm Tries AutoRun, Then Social Engineering to Infect · FBI Warns of New Twist to Reveton, Citadel Malware Scams · Dolphin bites girl at SeaWorld Orlando »

MajorGeeks.com » News » December 2012 » FBI Warns of New Twist to Reveton, Citadel Malware Scams
© 2000-2013 MajorGeeks.com
Powered by Contentteller® Business Edition