This is a read-only archive. No new posts or registrations. Privacy Page
Discussion

ZeuS thieves charged ...

2 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

FYI…

Zeus thieves charged …
Feds accuse 37 of being Zeus 'money mules'…
- http://www.theregister.co.uk/2010/09/30/ze…_mules_charged/
30 September 2010 - "Federal prosecutors in New York City have charged 37 people with participating in a scheme that defrauded banks out of millions of dollars using the Zeus Trojan. Many of the charges were filed against Russian nationals accused of opening bank accounts to launder money transferred from from people who had been infected by the crimeware. The so-called money mules allegedly kept a small percentage and wired the remainder to associates in Eastern Europe. The charges were unsealed on Thursday, a day after UK prosecutors filed charges against 11 alleged Zeus money mules* from Eastern Europe…"
* http://www.theregister.co.uk/2010/09/30/ze…_crime_charges/

- http://krebsonsecurity.com/2010/09/u-s-cha…ed-money-mules/
Sept 30, 2010 - "… charged more than 60 individuals — and arrested 20…"
- http://www.fbi.gov/wanted/alert/newyork2.htm

- http://www.theinquirer.net/inquirer/news/1…s-botnot-crimes
Oct 01 2010 - "Over 80 arrested … 55 people have already been charged and a further 37 people have been indicted for a raft of fraud and money laundering charges…"

- http://www.theregister.co.uk/2010/10/01/zeus_kingpin_arrest/
1 October 2010 - "Ukrainian police on Thursday arrested five people suspected of orchestrating an international fraud ring that siphoned more than $70m out of bank accounts by infecting computers with the Zeus trojan. The action by Ukraine's SBU was part of an unprecedented partnership among law enforcement agencies in the US, the UK, the Netherlands, and Ukraine, the FBI said in a press release* issued on Friday…"
* http://www.fbi.gov/pressrel/pressrel10/tri…reach100110.htm

- http://www.fbi.gov/page2/oct10/cyber_100110.html

B)
FYI…

ZeuS trojan still a threat…
- http://www.pcworld.com/article/206841/desp…_threatens.html
Oct 3, 2010 - "Despite high-profile busts in the U.S., U.K. and Ukraine of cybercriminals using ZeuS malware to steal from online accounts, ZeuS will evolve and remain an effective theft tool for a long time… It's available; it's affordable; it works; its toolkit makes modifying it simple. And the core people who do the major development work have managed to elude capture, hiding behind layers of shifting command and control servers, ISPs, domain registrars and international borders… researchers recently discovered that a ZeuS add-on helps defeat attempts by banks to thwart access by thieves who have used ZeuS to steal usernames and passwords of online banking customers. After users login, the banks send SMS messages to their cell phones containing one-time codes that the customers enter. This two-factor authentication makes it more difficult for criminals to break into accounts, but the developers of ZeuS found a way. A mobile ZeuS Trojan grabs the one-time code and sends it to a ZeuS command and control server where criminals can use it to break into accounts… The people behind ZeuS are good at hiding, says Manky. They use multiple ISPs, multiple command-and-control servers, multiple domains and base this infrastructure in multiple countries, all of which makes it difficult to trace their whereabouts. Compounding the problem, they frequently shift their infrastructure to new providers and new locations to start over… the flexibility of ZeuS make it certain its attacks will keep coming…"

More Arrests…
- http://www.symantec.com/connect/de/blogs/z…ds-more-arrests
Oct 4, 2010

Charted - ZeuS infections
- http://www.symantec.com/connect/sites/defa…0infections.PNG

:ph34r: <_<