Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Cyberthieves Silently Copy Your Passwords as You Type
NY Times ^ | February 27, 2006 | TOM ZELLER Jr.

Posted on 02/28/2006 1:16:19 AM PST by neverdem

click here to read article


Navigation: use the links below to view more comments.
first previous 1-20 ... 41-6061-8081-100101-103 next last
To: Turbopilot

Okay, TTY then. I'm going to go 'ambush myself' with another cup of coffee. :-)


61 posted on 02/28/2006 2:39:20 AM PST by Riley ("What color is the boathouse at Hereford?")
[ Post Reply | Private Reply | To 60 | View Replies]

To: Riley

Bump


62 posted on 02/28/2006 2:44:26 AM PST by GOP_Proud (Jack Bauer wears Dick Cheney jammies.)
[ Post Reply | Private Reply | To 40 | View Replies]

To: HiTech RedNeck

Sigh...and I just had said I'm going to bed.

If my machine's been hacked, then my firewalls and other antivirus and antispyware programs haven't noticed. None of my files have been opened, changed or deleted, and no new ones have been created. No new services or processes are running, and no existing services or processes have been stopped. Nothing's been added to or deleted from the list of programs, processes, or services that start when my system starts up. No packets are entering or leaving unauthorized ports, and no programs are sending or receiving packets from the few ports that are open. Nothing is being redirected by my browser hosts file. No system resources are being used by anything unauthorized. So whatever those Russian haxxors did, it had no effect on either me or anyone else. What is it, exactly, that they did, anyway?


63 posted on 02/28/2006 2:45:14 AM PST by Turbopilot (Nothing in the above post is or should be construed as legal research, analysis, or advice.)
[ Post Reply | Private Reply | To 59 | View Replies]

To: pt17
I don't think MS wrote it - I believe they bought the (very) good product Giant had.

Then it should be good - for another year or so.

:)

64 posted on 02/28/2006 2:50:58 AM PST by D-fendr
[ Post Reply | Private Reply | To 28 | View Replies]

To: Turbopilot
If my computer's hacked, I haven't noticed. I stay away from dangerous websites.

(Denny Crane: "I Don't Want To Socialize With A Pinko Liberal Democrat Commie. Say What You Like About Republicans. We Stick To Our Convictions. Even When We Know We're Dead Wrong.")

65 posted on 02/28/2006 2:53:01 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 63 | View Replies]

To: goldstategop
I stay away from dangerous websites

And how are you to know exactly what that is, if you Google or Dogpile for things very often. Something that looks innocuous could be a real gotcha.

66 posted on 02/28/2006 2:54:31 AM PST by HiTech RedNeck
[ Post Reply | Private Reply | To 65 | View Replies]

To: Turbopilot

Shouldn't it tell you something, that you need to run your Windows computer like a police state to even begin to make headway against the cyber pestilences?


67 posted on 02/28/2006 2:55:46 AM PST by HiTech RedNeck
[ Post Reply | Private Reply | To 63 | View Replies]

To: goldstategop; All

"I recommend Ewido and Microsoft Anti-Spyware - they're both free."




They *are* very good-- one thing I suggest is running one of the online scans once in a while. While looking for programming information on my old bag phone, I stumbled across sites claiming to be "real hacker sites," and darned if they didn't boast of writing malware that could "get by any antivirus, and remain undetected one time out of five."

Since I use AVG ( it, and Avast!, are highly thought of by several antimalware forums ) I tried a couple of online scans, and danged if they didn't find a few tracking cookies, and a Trojan, that slipped by AVG and Ad-Aware.

Worth a try, from time to time:

http://www.bitdefender.com/scan8/#

http://housecall-beta.trendmicro.com/en/start_corp.asp

http://www.kaspersky.com/virusscanner

http://www.pandasoftware.com/products/activescan.htm


68 posted on 02/28/2006 2:56:56 AM PST by backhoe (Just an Old Keyboard Cowboy, Ridin' the Trakball into the Dawn of Information)
[ Post Reply | Private Reply | To 11 | View Replies]

To: BJungNan

I just copy and paste passwords and IDs.


69 posted on 02/28/2006 2:57:46 AM PST by tangerine
[ Post Reply | Private Reply | To 33 | View Replies]

To: D-fendr

I'm not convinced that it's good now. There are several pieces of known malware that default to 'ignore' as the recommended countermeasure. Claria (Gain) in particular.

(ahem) coincidentally, there was some talk of Microsoft buying Claria. I think they're denying it now, or have scrapped the idea.

To get the most out of what is now 'Windows Defender', one really must closely watch it's recommendations for what constitues a threat and adjust those actions, accordingly.


70 posted on 02/28/2006 2:58:33 AM PST by Riley ("What color is the boathouse at Hereford?")
[ Post Reply | Private Reply | To 64 | View Replies]

To: backhoe

Thanks for reminding me of something. (No quarrel with your list of resources- it just made me think of something)

The Internet is FULL of bogus 'antispyware' applications. If you run one that has claimed to have found something and wants thirty bucks to clean it off for you- you have almost certainly got a bogus app.

http://www.spywarewarrior.com/ is a resource that tests and maintains lists of the good and bad ones, and has a very active forum that is staffed with volunteers who have helped innumerable victims of this stuff get it off of their machines. It is also a good place for IT people to look up a specific procedure without wasting ages dissecting some particular piece of malware.


71 posted on 02/28/2006 3:08:15 AM PST by Riley ("What color is the boathouse at Hereford?")
[ Post Reply | Private Reply | To 68 | View Replies]

To: Riley

"The Internet is FULL of bogus 'antispyware' applications. If you run one that has claimed to have found something and wants thirty bucks to clean it off for you- you have almost certainly got a bogus app.
http://www.spywarewarrior.com/ is a resource that tests and maintains lists of the good and bad ones..."




So true-- the forums I frequent are full of tales from people who got suckered by "antispyware" that was malware in disguise.

Here are a couple of other good forums:

http://forums.spywareinfo.com/index.php?b=1

http://www.geekstogo.com/forum/index.php?s=4b224f07b3e0d797d7cdac5dfe673b2b&showforum=37


72 posted on 02/28/2006 3:20:53 AM PST by backhoe (Just an Old Keyboard Cowboy, Ridin' the Trakball into the Dawn of Information)
[ Post Reply | Private Reply | To 71 | View Replies]

To: backhoe

I haven't been to 'Geekstogo', but I agree with the Spywareinfo forum as being a premier resource.

I also read:
http://www.benedelman.org/
And the forums at:
http://www.aumha.org/
http://www.sysinternals.com/


73 posted on 02/28/2006 3:29:23 AM PST by Riley ("What color is the boathouse at Hereford?")
[ Post Reply | Private Reply | To 72 | View Replies]

To: Riley

Thanks- Hadn't seen those!


74 posted on 02/28/2006 3:30:38 AM PST by backhoe (Just an Old Keyboard Cowboy, Ridin' the Trakball into the Dawn of Information)
[ Post Reply | Private Reply | To 73 | View Replies]

To: All

Just a note to all- don't EVER buy antispyware software from an ad that appears IN A POP-UP WINDOW! It's like finding a brick in your living room that's been thrown through your window, with a glass company ad on it, as far as I'm concerned.


75 posted on 02/28/2006 3:32:18 AM PST by Riley ("What color is the boathouse at Hereford?")
[ Post Reply | Private Reply | To 73 | View Replies]

To: neverdem
Microsoft has replaced its Anti-Spyware product with a new beta - Windows Defender. It installs a new Software Explorers applet in the Control Panel. This can be used to view processes that are running on your computer and enable and disable them as you see fit.

(Denny Crane: "I Don't Want To Socialize With A Pinko Liberal Democrat Commie. Say What You Like About Republicans. We Stick To Our Convictions. Even When We Know We're Dead Wrong.")

76 posted on 02/28/2006 4:00:00 AM PST by goldstategop (In Memory Of A Dearly Beloved Friend Who Lives On In My Heart Forever)
[ Post Reply | Private Reply | To 1 | View Replies]

To: sneakers

bump!


77 posted on 02/28/2006 4:03:22 AM PST by sneakers
[ Post Reply | Private Reply | To 1 | View Replies]

To: goldstategop
And you have no way of knowing if a keylogger program is installed on your Windows computer.

This is the part that I find difficult to believe.
There must be a link in the exploitation chain that the user can have control of on a "live" basis, as it happens.
For instance. No email goes out, ever, without an active confirmation...
Surely, the forces of good is as innovative as the forces of darkness...

78 posted on 02/28/2006 6:30:27 AM PST by Publius6961 (Multiculturalism is the white flag of a dying country)
[ Post Reply | Private Reply | To 3 | View Replies]

To: syriacus

Keyloggers can't detect mouse position?


79 posted on 02/28/2006 6:38:33 AM PST by Publius6961 (Multiculturalism is the white flag of a dying country)
[ Post Reply | Private Reply | To 52 | View Replies]

To: HiTech RedNeck
SSN: 123456789 type 5 mouse in front of the 5 type 2 mouse after the 5 type 9 etc.

Better still, use copy/paste, especially on a public machine.

80 posted on 02/28/2006 6:59:52 AM PST by Minn
[ Post Reply | Private Reply | To 9 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-20 ... 41-6061-8081-100101-103 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson