Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror
×
Internet Explorer The Internet

Trojans and Popups and Slimeball Business 287

Selanit writes "Salon.com is reporting on a company which exploited a vulnerability in an old but common version of Internet Explorer's Java engine to install spyware on the visitor's machine. " It's a pretty in depth story showing the lack of respect that some companies have. My favorite part is that the guy who denies any knowledge of the trojan popup is named 'Frank Bigott'.
This discussion has been archived. No new comments can be posted.

Trojans and Popups and Slimeball Business

Comments Filter:
  • by Marx_Mrvelous ( 532372 ) on Tuesday May 07, 2002 @10:10AM (#3476901) Homepage
    There are a few things about the article that don't seem to make sense, aside from the basic premise and the guy's name. Is this another internet rumour that slipped into the press? Anyone have real-live experience with this?
  • by ringbarer ( 545020 ) on Tuesday May 07, 2002 @10:11AM (#3476912) Homepage Journal
    How is this type of cancerware distinguishable from a virus that spreads by exploiting security vunerabilities?

    It seems that all the Klez and Chernobyl kiddies have gone and got themselves some venture capital, and are turning their malware into a business.
  • Um.. (Score:4, Insightful)

    by xtermz ( 234073 ) on Tuesday May 07, 2002 @10:16AM (#3476947) Homepage Journal
    ...Call me naive, but why isnt that states attorney general investigating this company? This is nothing short of corporate sponsored hax0ring.

    I didnt see any mention in the article of somebody lodging a criminal or even civil complaint.

    I think a big reason these companies get away with this crap is that nobody takes them to task for what they are doing...
  • by Anonymous Coward on Tuesday May 07, 2002 @10:23AM (#3477000)
    Come on. Netscape's engine didn't follow the Java spec. In fact, it had more violations that Microsoft's engine.

    Look who Sun chose to sue. Hmm...
  • by Nos. ( 179609 ) <andrew@th[ ]rrs.ca ['eke' in gap]> on Tuesday May 07, 2002 @10:23AM (#3477004) Homepage
    all those lame server on wwws1.com entries in my log files. My girlfriend's computer got hit by this, and I cleared it out (eventually). Funny, guys who can write these programs to monitor everything you do on the 'net, but can't setup DNS properly.
  • by Anonymous Coward on Tuesday May 07, 2002 @10:37AM (#3477088)
    I am pretty sure that flowgo.com is a known spamhouse that sends fake "opt-in" mailbombs to users. I would recommend that blocking all mail from flowgo.com if you have a large userbase and need to keep spam off your servers.
  • Yep - definitely (Score:4, Insightful)

    by BenHmm ( 90784 ) <ben.benhammersley@com> on Tuesday May 07, 2002 @10:38AM (#3477092) Homepage
    I have.

    Many times: it's why I now use Mozilla (well, that and the tabbed browsing and...and...and...) and Ad Aware.

    Mostly it seems to be dialler programs for offshore ISPs. Porn, basically.

    Use IE unprotected for a while, then run AdAware - it's quite scary.

  • by aao-brad ( 542582 ) <{ten.tsacmoc} {ta} {p_darb}> on Tuesday May 07, 2002 @10:46AM (#3477139)
    I think this is the problem with M$ trying to take over the world, so to speak. If all users in the world had to use M$ products and browsers, this kind of thing would happen a lot more. Why? There are a lot of other slimeball businesses out there thinking up ways of doing things, and I bet they'd read this article and wonder why they didn't think of it first.

    With that in mind, if the slimeballs knew that they can target one platform / browser (which is the case now as most normal people use IE anyway), they can devise things like this. Personally I use Mozilla, and tonight I'm converting to Linux, so this won't be much of an issue. I just wish more people knew there were other choices out there besides M$, and then they wouldn't fall victim to this.

  • by Darren Winsper ( 136155 ) on Tuesday May 07, 2002 @10:58AM (#3477200)
    It's just a statement with no supporting evidence.
  • Re:Um.. (Score:2, Insightful)

    by ocelotbob ( 173602 ) <ocelot@nosPAm.ocelotbob.org> on Tuesday May 07, 2002 @11:17AM (#3477335) Homepage
    ...Call me naive, but why isnt that states attorney general investigating this company? This is nothing short of corporate sponsored hax0ring.
    from the article:
    Susan Henrichsen, deputy attorney general for the state of California, declined to comment on specifics of the IntelliTech situation. But she noted that downloading software onto someone's computer without permission is tantamount to hacking.
    Sounds like the AG is looking into them. They probably are just getting their ducks into a row for a criminal case. With tech crimes like this, they don't want to make any mistakes and let someone go free who would have otherwise gone to jail.
  • by kubrick ( 27291 ) on Tuesday May 07, 2002 @11:19AM (#3477357)
    I can dream.

    A lot of the large media companies would be happier if no other competition existed for people's attention. A lot of the recent legislation is aimed not only at controlling the means of media consumption, but also the means of media production.

    In ten years, it could be illegal to put up a web site or run an ISP without arranging content licensing and censoring (like, say, Iran or China).

    Don't like it? Get active about it.

    You can dream, but the reality gets more and more like a nightmare each day. :(

  • Re:r-e-s-p-e-c-t (Score:3, Insightful)

    by gmack ( 197796 ) <gmack@noSpAM.innerfire.net> on Tuesday May 07, 2002 @11:22AM (#3477372) Homepage Journal
    Personally I blame both sides.. on one hand you have some idiot taking advantage but on the other MS should have considered the security implictions before a lot of those features were shown the light of day.
  • Scary Stuff! (Score:2, Insightful)

    by newerbob ( 577746 ) on Tuesday May 07, 2002 @11:39AM (#3477477) Homepage
    Fortunately, I run ProximaBob, a pop-up killer that neuters Java and JavaScript from sites that I don't mark as trusted.

    I hope this company is held accoutable.

    There's another company that's nearly as bad: Real Networks. Ever see how much crap they try to install if you're not paying attention?

    Our company now has RealPlayer on its banned list, because we consider it a virus.

  • by Steveftoth ( 78419 ) on Tuesday May 07, 2002 @12:10PM (#3477697) Homepage
    It used to be that you had to have an IQ of greater then 100 to actually even USE the internet.

    Maybe that's why the internet was so much better before the Homer Simpsons of the world decided to get on the internet.
  • by peddrenth ( 575761 ) on Tuesday May 07, 2002 @12:52PM (#3478017) Homepage
    the sleaziest thing I've yet seen in spyware, i.e., capitalizing on the emotional turmoil for 9/11

    No, respectable people would never do that, would they? Respectable people like, hmmm, THE FBI???
  • by cicho ( 45472 ) on Tuesday May 07, 2002 @02:51PM (#3478804) Homepage
    Not Kazaa. RadLight [slashdot.org]. They've been slapped for this and apparently stopped.
  • by spectecjr ( 31235 ) on Tuesday May 07, 2002 @05:41PM (#3480162) Homepage
    He didn't make any statement that needed any more supporting evidence than the post he was responding to.

    If you had written applets between 1996 and 1998 using Netscape's VM, the Sun JVM and the Microsoft JVM at the time, and tried to get the same code working on all three, you wouldn't have needed any corroboration.

    One of the worst was that Netscape's VM used completely different Z-Order to everyone else's. Their security manager was different.

    I'd come up with more examples, but I've blocked out that awful part of my memory.

    Simon

"May your future be limited only by your dreams." -- Christa McAuliffe

Working...