Change Language
Sun Sun Sun

You are here: News >> IT Security News >> Online Outlaws Playing Hide and Seek with Prosecutors

» IT Security NEWS
 
» 08 October 2009
Online Outlaws Playing Hide and Seek with Prosecutors

A representative of the RSA FraudAction Research Laboratory, Aviv Raff, recently discovered that the URLZone botnet control server intentionally creates false information leaks whenever it suspects that it's being investigated by IT security authorities. RSA FraudAction Research Labs and many other security experts like them have been cooperating with the bank industry in order to locate servers for suspected botnets by masquerading as infected victims.

First off, dispatching operatives are utilized to withdraw money and forward it to the scam's masterminds. Dubbed as "money mules", these special forwarding agents have been in use by various online banking scammers for a long time now. They specifically refer to people who act as cash launderers for various Internet bank transfer scams. These mules are tasked to wire the incoming money—minus their share, of course—to places all over the globe via Western Union or other similar services.

Locating the active money mules of a cyber crime syndicate enables banks to unveil and impede forged bank transfers from the very start. Nevertheless, while undergoing his investigation, security official Aviv Raff discovered that the botnet server was programmed to provide him the account details of innocent users who have been turned into scapegoats for the racket.

Evidently, the investigated server was able to detect that the supposed "victims" (or investigators posing as such) weren't victims at all, and thusly reacted to the circumstances by intentionally laying false tracks to undermine the sting operation. Fascinatingly, the false money mule's account information and details weren't chosen at random either. Raff claims that the details he was able to procure all belonged to individuals who've legally received money from a given trojan victim beforehand.

This ingenious little feature is made possible by the fraudsters' careful monitoring of their targets' financial activities, which provides them a comprehensive compendium of legitimate bank transfer data that they can use against cyber crime investigators as diversionary tactics.

Indeed, there's a chance that unsuspecting account owners could be charged of cash laundering because online scammers can make it appear that stolen funds are passing through their accounts. This eventuality shows that online outlaws are currently responding to the attention and pressure that law enforcement and private investigators are currently providing them.

 

24 Hour Open Web Shop

Got a Question? - Call us!
EU: +45-70-235-245
US Toll Free: +1-888-704-7297
Sent us an Email!

Get a Free Vulnerability Scan

Get a Free SEO Blackhat Scan


  Email :
     
SecPoint News
 
02 September 2010
New Penetrator Firmware 7.7.6 ...
31 August 2010
IBM corrects security report a...
30 August 2010
QuickTime found to be vulnerab...
View More...
 
Customer References
 
View More...
   
Product Awards
 
View More...
Privacy Statement | Link Policy | User Policy | IT Security Blog | IT Security Forum | SecPoint Pictures
Event Pictures | Exploit Archive | IT Security Web Shop | Vulnerability Library
IT Security Video | Sitemap
© Copyright 1999-2010: SecPoint®
SecPoint ApS - Lergravsvej 53 - 2300 Copenhagen S - Phone +45 70 235 245
Recent awards Compatible with Visit us on Facebook! Visit us on LinkedIn! Visit us on Myspace!
   
Facebook
Group!


Follow us on Twitter!
Anti-Spam Appliance - Anti-Spam Firewall - Unified Threat Management Appliance Anti-Virus - Web Filter Appliance - Anti Spam Appliance - Anti Spam Firewall - UTM Appliance Wifi Security - Wifi Pen Test - Wifi Crack - Wifi Hack - Wifi Audit - Wep Wpa2 Crack Vulnerability Scanner - Vulnerability Assessment - Security Scanner - Pen Test Appliance