Thousands may lose internet in July

2012-04-21 19:03

kalahari.com

  • Us
    An old fashioned story by Mary Louisa Molesworth (1836-1921). The author of beloved children's... Now R150.00
    buy now

Washington - For computer users, a few mouse clicks could mean the difference between staying online and losing internet connections this summer.

Unknown to most of them, their problem began when international hackers ran an online advertising scam to take control of infected computers around the world. In a highly unusual response, the FBI set up a safety net months ago using government computers to prevent internet disruptions for those infected users. But that system is to be shut down.

The FBI is encouraging users to visit a website run by its security partner, http://www.dcwg.org , that will inform them whether they're infected and explain how to fix the problem. After July 9, infected users won't be able to connect to the internet.

Most victims don't even know their computers have been infected, although the malicious software probably has slowed their web surfing and disabled their antivirus software, making their machines more vulnerable to other problems.

Last November, the FBI and other authorities were preparing to take down a hacker ring that had been running an internet ad scam on a massive network of infected computers.

"We started to realise that we might have a little bit of a problem on our hands because ... if we just pulled the plug on their criminal infrastructure and threw everybody in jail, the victims of this were going to be without internet service," said Tom Grasso, an FBI supervisory special agent.

"The average user would open up Internet Explorer and get 'page not found' and think the internet is broken."

On the night of the arrests, the agency brought in Paul Vixie, chair and founder of Internet Systems Consortium, to install two internet servers to take the place of the truckload of impounded rogue servers that infected computers were using.

Federal officials planned to keep their servers online until March, giving everyone opportunity to clean their computers. But it wasn't enough time. A federal judge in New York extended the deadline until July.

Now, said Grasso, "the full court press is on to get people to address this problem." And it's up to computer users to check their PCs.

Modus operandi

This is what happened:

Hackers infected a network of probably more than 570 000 computers worldwide. They took advantage of vulnerabilities in the Microsoft Windows operating system to install malicious software on the victim computers. This turned off antivirus updates and changed the way the computers reconcile website addresses behind the scenes on the internet's domain name system.

The DNS system is a network of servers that translates a web address —-such as www.ap.org - into the numerical addresses that computers use. Victim computers were reprogrammed to use rogue DNS servers owned by the attackers. This allowed the attackers to redirect computers to fraudulent versions of any website.

The hackers earned profits from advertisements that appeared on websites that victims were tricked into visiting. The scam netted the hackers at least $14 million, according to the FBI. It also made thousands of computers reliant on the rogue servers for their internet browsing.

When the FBI and others arrested six Estonians last November, the agency replaced the rogue servers with Vixie's clean ones. Installing and running the two substitute servers for eight months is costing the federal government about $87 000.

The number of victims is hard to pinpoint, but the FBI believes that on the day of the arrests, at least 568 000 unique internet addresses were using the rogue servers.

Five months later, FBI estimates that the number is down to at least 360 000. The US has the most, about 85 000, federal authorities said. Other countries with more than 20 000 each include Italy, India, England and Germany. Smaller numbers are online in Spain, France, Canada, China and Mexico.

Vixie said most of the victims are probably individual home users, rather than corporations that have technology staffs who routinely check the computers.

FBI officials said they organised an unusual system to avoid any appearance of government intrusion into the internet or private computers. And while this is the first time the FBI used it, it won't be the last.

"This is the future of what we will be doing," said Eric Strom, a unit chief in the FBI's Cyber Division. "Until there is a change in legal system, both inside and outside the United States, to get up to speed with the cyber problem, we will have to go down these paths, trail-blazing if you will, on these types of investigations."

Now, he said, every time the agency gets near the end of a cyber case, "we get to the point where we say, how are we going to do this, how are we going to clean the system" without creating a bigger mess than before.

- AP

Read more on:    fbi  |  us  |  internet security  |  online privacy
NEXT ON NEWS24X

Read News24’s Comments Policy

24.com publishes all comments posted on articles provided that they adhere to our Comments Policy. Should you wish to report a comment for editorial review, please do so by clicking the 'Report Comment' button to the right of each comment.

Comment on this story
74 comments
Add your comment
Comment 0 characters remaining
 

Inside News24

 
 
Traffic
Lottery
 
  • Thursday Citrusdal - 16:22 PM
    Road name: N7
    ROADWORKS - stop / go controls in operation between Citrusdal and Clanwilliam (until 2014)
  • Monday Ventersburg - 05:24 AM
    Road name: N1
    ROADWORKS - construction works are underway with a deviation in operation just north of the town centre
 
More traffic reports...
 

Jobs [change area]

Property [change area]

Travel - Look, Book, Go!

Southern Sun - Maputo

Spend 3 nights and pay for 2 at Southern Sun - Maputo for only R4 621 per person sharing. Includes accommodation, return flights, airport taxes and airport transfers. Book now!

Kalahari.com - shop online today

Buy Gordon Ramsay’s ultimate cookery course book + Bokke Se Komuis for FREE!

Buy Gordon Ramsay’s ultimate cookery course for just R368 and get Bokke Se Kombuis, valued at R180, for FREE! Offer valid while stocks last. Buy now!

Save on Bear Grylls survival tools!

Are you a grrrr rugged and manly man? Or looking for a gift for one? Check out these awesome Bear Grylls survival tools at great prices. Buy now!

Hot and exclusive Coby 7" wifi tablet – only R1299.95

Don’t miss out on this super hot deal of the week, save R300 on the Coby 7” tablet! Dispatched within 24hrs + free delivery. While stocks last. Buy now!

Up to 20% off all the hottest gaming pre-orders!

Get it while its hot! Save up to 20% on the hottest games on pre-orders including Grand Theft Auto 5, Fifa 14, Grid 2, Battlefield 4 and more. Pre-order now!

20% off the latest music releases

Get 20% off hot new music releases, including To Be Loved by Michael Buble, Now 63, The 20/20 Experience by Justine Timberlake and many more. Offer valid while stocks last. Shop now!

OLX Free Classifieds [change area]

Blackberry z10 (1 day old)

For Sale, Cell Phones - Accessories in South Africa, Gauteng, Johannesburg. Date May 13

Urgent Sale

Vehicles, Motorcycles - Scooters in South Africa, Gauteng, Johannesburg. Date May 13

Aupairs

Jobs, Au pairs & nannies in South Africa, Gauteng, Johannesburg. Date May 12

Samsung Galaxy S II I9100

Vivid.Fast.Slim. Don’t contain yourself. Look beyond the limits of yesterday’s...

From R3495.00

I'm shopping for:

Horoscopes
Aquarius
Aquarius

Chances are that your partner is competing with your job to get your attention today. Although you are passionate about your...read more

There are new stories on the homepage. Click here to see them.
 
English
Afrikaans
isiZulu

Hello 

Create Profile

Creating your profile will enable you to submit photos and stories to get published on News24.


Please provide a username for your profile page:

This username must be unique, cannot be edited and will be used in the URL to your profile page across the entire 24.com network.

Settings

Location Settings

News24 allows you to edit the display of certain components based on a location. If you wish to personalise the page based on your preferences, please select a location for each component and click "Submit" in order for the changes to take affect.








Facebook Sign-In

Hi News addict,

Join the News24 Community to be involved in breaking the news.

Log in with Facebook to comment and personalise news, weather and listings.