Investigation using the BBC honeypot![]() Investigation using the BBC honeypotIn this second part of an investigation using the BBC honeypot, it isrecounted what happens when a machine gets infected rather than just log attacks. It is rare that you would willingly let vandals and burglars into your
The idea of letting the PC get infected was to see exactly what nasty
Firstly, we visited a few of the websites mentioned in the many fake
Much of the software available via these bogus warnings turned out to be
The programs offered a free scan of the honeypot machine looking for
This was a surprise: The honeypot machine had only been used to visit
Checking the results with a bona fide spyware spotter revealed that most
If this was not bad enough, all the fake security programs demanded
Spyware storm
One of the websites sending out fake security spam looked particularly
A visit to this website prompted an immediate re-direct to another site
Sneakily this was an image rather than a Windows dialogue box so
The download installed automatically and kicked off a tsunami of
The software was so sneaky that it tried to stop this traffic being seen
The result of the installation was new toolbars on the IE browser, a
The machine was becoming unusable because it was so busy so we were
The bogus download went into overdrive trying to get back online. The
The machine became hard to shut down and we could only shut it off by
The end result of that single download was a PC that was unusable as it
We reverted back to the original configuration of the honeypot machine
On the honeypot a USB drive was being used to take backups of the attack
The USB drive had gained a new passenger - the core program of the fake
Cleaning up the PC proved impossible. It was lucky we could just revert
Computer and Internet Security news provided here represents global independent resources. The information represented here is © by the stated author. |
|
Best of the Web 1 | Best of the Web 2 | Best of the Web 3 | Best of the Web 4
Worlds Largest Network
Active © WorldsLargestNetwork.com ; All Rights Reserved