Presentation is loading. Please wait.

Presentation is loading. Please wait.

Joe Klemencic 2005. 80%+ Number of machines on the Internet infected with Spyware * source: TechNewsWorld.

Similar presentations


Presentation on theme: "Joe Klemencic 2005. 80%+ Number of machines on the Internet infected with Spyware * source: TechNewsWorld."— Presentation transcript:

1 Joe Klemencic 2005

2 80%+ Number of machines on the Internet infected with Spyware * source: TechNewsWorld

3 28 Items Number of Spyware items on average * source: IntranetJournal

4

5 Order of 1 lamp for John Doe submitted. Cookie: John Doe ordered 1 lamp John Doe likes lamps While searching for Star Wars items, we noticed that you also like lamps.

6

7

8 =

9

10 if INSTALL_BUTTON is clicked{ install malware.exe } if NOTHANKS_BUTTON is clicked { install malware.exe anyway // Bwhahaa!!! } If this is a REAL Windows dialog box, use the X to close –OR- use your browsers BACK button.

11 In this case, the entire dialog box is really a Graphic image. No matter where you click, it will install malware. if MOUSECLICK { install malware.exe }

12 Phishing

13 *Source: USA Today 01-14-2005 Identity Theft: Not limited to relatives or physical theft of personal information (drivers license, credit cards). Most Identity Theft occurs NOT from your on-line transactions, but rather from locally installed software watching your computer OR from compromised machines at the various merchants and banks. Just because a web site uses SSL or states it is a Secure Server does NOT guarantee your data is safe. All it means is that the communications between your machine and the web site is encrypted (or at least is supposed to be). Many banks will NOT honor their fraud policies if the ID theft was due to Phishing.

14

15 PHARMING (Hijacking Hosts/DNS) c:\windows\system32\drivers\etc\hosts or /etc/hosts 206.65.183.18 www.microsoft.com 206.65.183.18 www.google.com 206.65.183.18 www.paypal.com 206.65.183.18 www.ebay.com 206.65.183.18 home.msn.com 206.65.183.18 www.yahoo.com 206.65.183.18 mail.yahoo.com 206.65.183.18 www.cnn.com 206.65.183.18 www.bankone.com 206.65.183.18 www.citibank.com

16 Cleanup and Prevention

17

18

19

20 Dont click on everything that pops up in front of you and READ the messages!!! If unsure, visit a different site.

21 Hijack your own windows\system32\drivers\etc\hosts file: 127.0.0.1 www.doubleclick.net 127.0.0.1 ad.doubleclick.net 127.0.0.1 ad.preferences.com 127.0.0.1 ads.doubleclick.com 127.0.0.1 ads.infospace.com 127.0.0.1 ads.msn.com Make your hosts file Read Only:

22 Spyware and Phishing Resources Current Phishing Scams: http://www.antiphishing.org/ Spyware Discussions: http://www.spywaremanagement.org/ E-mail Hoax: http://hoaxbusters.ciac.org/

23


Download ppt "Joe Klemencic 2005. 80%+ Number of machines on the Internet infected with Spyware * source: TechNewsWorld."

Similar presentations


Ads by Google