'OddJob' Trojan robs online bankers
Summary
Topics
A new Trojan dubbed 'OddJob' is stealing people's money by taking over their online banking sessions after they think they've logged off.
The Trojan, which targets Windows-based computers, is being used by criminals in eastern Europe to steal money from accounts in the United States, Poland and Denmark, Amit Klein, chief technology officer of Trusteer, writes in a blog post on Tuesday.
Klein said in an email that he could not identify the banks being targeted or provide an estimate on the number of victims."It is early days for this malware," he said. "It appears to be a work in progress, so we expect the code to become more sophisticated over time."
For more on this story, read Online banking hit by thieves on CNET News.
Just In
If I lock my front door and someone breaks in and steals my plasma, should the lock company be held responsible? Or that ADT system that was active. Real world situations shouldn't come with compensations from random companies.
You probably got that OddJob trojan because you weren't wearing one when you visited that questionable website. It's not the O.S.'s fault. You're the one thats suppose to have the brain, not the computer.
First of all, most porn websites are clean. I go to TONS daily and don't get any viruses on my machine
Second of all, most people DO update their software except the people with no internet connection.
Third, you are right.... a lot of people don't regularly scan their computer.
On the other things, I have to say those don't affect whether you get a virus or not very much.
Okay, troll.
No - I think you are wrong in your assumtions. Why don't you, and other people start taking responsibility for thewir own actions ? Time to stop the blamestorming, all the blank check suing going on, and freaking relax for God's sake. Will the bank not credit your account immediately if there is fraudulent activity ? If not, you need to change your bank, D. Marcu. If you DON'T update your system regularly, and you don't use a trusted anti-virus, and you surf the kind of sites where viri dwell, YOU DESERVE IT, PERIOD. Grow a pair, and take responsibiltiy - I'm tired of paying out the A$$ in insurance fees, hellish markups on crap because pansies whine about crap, and then sue someone. GROW UP.
Oh, but wait, there is MORE ! I read on to see that you are an angelic FREEBSD user, so of course you are above everyone and everything. If it doesn't affect you, why get on here and whine ? Puh-leeze. GET. A. LIFE.
what a trojan is. Hint: You bring it in yourself believing it was something else. Please learn some history, ok?
This is not about any OS being vulnerable. Any OS which allow you to install software (i.e not walled gardens) are "vulnerable" to the device between the keyboard and the chair.
Sheesh! I thought FreeBSD users were supposed to be tech savvy. You are obviously the exception to the rule.
You are missing the fact that these OS's are as secure as the people in question can make them, and it is telling that with ALL the pron sites I surf..... I've only gotten a virus when I have been stupid enough to download one myself thinking it was a codec pack or something I wanted.
In fact, more often the virus alerts on my machine are MISTAKEN alerts, like a game trainer being diagnosed as a virus.
You are going to have to realize that ALL OS's have flaws in them, and get used to that fact. Otherwise, stop using computers period.
Mac based macs may continue to party on.
until hackers get sick and tired of arrogant mac users and start coding malware for macs. Security by obscurity isn't security at all
Windows coders aren't smart enough to code viruses for Macs, they are all bumbling retards who code holes the size of a mack truck into their programs.
It appears obvious that you are referring to yourself. Is that a threat? Are you even capable?
Taking a notion that's likely come from the unix security world (obscurity) and using it against unix in general is simply laughable.
Apple based their OS on the same code that Linux, OpenBSD and FreeBSD have (the last two rightly stuck closer to their roots, especially OpenBSD) . They have inherited real security from a professional OS and have the scrutiny of the whole world, not including the closed apple GUI, which is the most dangerous part. This means that not only would malware writers have to raise their game and also do more work. The kind of malware that gets found on windows would never last long in the field on Unix-like systems, because it's generally rather simple malware. Firefox is Opensource and has the fastest time to patch record. Microsoft and programs running on windows consistently have the worst measured in years rather than hours.This means the ROI would be too low, primarily because of REAL security. If they get locked out just find another way in. It's more about the bad guys fighting over control of your windows box than whether they get in. They even patch it to keep others out and fail time and time again, just like you.
Go for it, I've got a Mac, here's my IP 127.0.0.1, might I suggest a deltree C: to delete all my files.
Like it or not UNIX and Windows share more in common wrt security than not.
Also take note the article discusses a trojan and not some other form of malware.
Why aren't you posting the public reachable address?
Like they are going to focus on an OS that is run by 1% of people when Windows is 98%+ of computer users at home? Hell no!
Not quite.... I have to admit that Mac users usually make more than Windows users, but they fit into the 'more money than brains' category most times.
True, every topic here are being converted into an OS war.
It's always "mine is better/bigger/beautiful than yours", as predicted by psychology books.
1. the recipient can be easily traced and apprehended by authorities
2. the transaction can be easily reversed by the bank
3. all withdrawals have a limited amount daily
4. banks usually verify if the transaction was legit thru phone, sometimes within 2 hours of suspicious transaction
for protection, its best to transact thru ATM or human teller over the counter.
Probably differs between banks.
Check your T&C's and you can ask your bank if they provide such facility.
Are you saying that FreeBSD, Macs, and other none Windows OS's, ARE NOT VULNERABLE TO TROJANS?
@Apple: Who needs to pay twice as much for a computer? And buy music you can't play anywhere else?
Linux = Freedom & security.
What's Amarok for?
iTunes music has been DRM free for a few years now, maybe you should get with the times.
You make a good point about Open Source. The thing is MacOS-Unix is NOT open source. Unix has been a proprietary operating system since 2002. Granted it is more secure than Windows.
However, more to your point, Linux IS open source. Using the logic that open source software allows for quicker updates and better security...Apple may be more at risk than Linux because Linux can be fixed by experts in the open source community where Apple-OS cannot.
As long as any company holds a death grip on the source code no independent group/programmer can really validate its security until the flaws are exploited in the real world.
So far as the banking goes if your bank's server itself is compromised what is one to do? The banks should be require to recompense.
Join the conversation!
The best of ZDNet, delivered
ZDNet Newsletters
Get the best of ZDNet delivered straight to your inbox




