Online Scams Exploit Katrina Disaster

By Ed Oswald | Published September 1, 2005, 3:57 PM

In the wake of hurricane Katrina, several online scams have begun to circulate the Internet, according to several security firms. Sophos warned users on Thursday not to open a malware-Infected e-mail posing as news on the disaster.

Possible subject lines of the e-mail could be "Re: g8 Tropical storm flooded New Orleans", "Re: g7 80 percent of our city underwater", and "Re: q1 Katrina killed as many as 80 people". The group said there could be additional variants.

BetaNews on Thursday morning had received a variant of the above e-mails, however it appeared that the variance is the letter and number combination following the "Re:" prefix.

In the body of the message, clicking on the "Read More.." link will take the user to a malicious Web site that poses as a news story. In reality, the site uses code to exploit vulnerabilities within Internet Explorer to install malware including the Troj/Cgab-A Trojan horse.

From there, the attacker could remotely access the user's computer.

"Receiving or reading the emails themselves does not mean you are infected," Graham Cluley, senior technology consultant for Sophos said.

The SANS Institute is reporting that there are several e-mails soliciting donations through a Paypal link. According to SANS, it may be difficult to tell whether the e-mail is from a legitimate organization.

"The hurricane is a dreadful natural disaster, and it's sickening to think that hackers are prepared to exploit the horrendous situation in an attempt to break into computers for the purposes of spamming, extortion and theft," added Cluley.

After discovery of the sites yesterday, several have been removed. "There are now about 230 .com domains that contain the strings 'katrina' and 'hurricane'. We will make a list of more domains like this public soon to ask for your help to review them," SANS said on its Web site.

Comments

Hi, Im wondering about an online scam. I have a lot of clothing to donate and would like to donate directly so that I know its going where it's needed. I posted something on a Katrina Volunteer site and have gotten some replies, how can you tell who is actually a Katrina survivor and who just wants free stuff?

Score: 0

|

This always happens, i don't know why people act so shocked:

"The hurricane is a dreadful natural disaster, and it's sickening to think that hackers are prepared to exploit the horrendous situation in an attempt to break into computers for the purposes of spamming, extortion and theft"

We know this already,I believe it is right to be aware of the situation, but i don't know why we waste our breath on the hackers.

We should say, be aware of these ****er's, watch your inbox, the end.

Score: 0

|

Read a little Konrad, Golding or Georges Simenon. There is no point beyond which evil will not go. These despicable acts may be more noticible in a crisis, but they occur every day. We are, by and large, an ignorant and evil people. If we started shooting all the evil people, we wouldn't have enough left to populate Peoria, Illinois.

Score: 0

|

Man, there are SO many things wrong with this article. First of all the individuals sending these e-mails are not "hackers". They are crackers and spammers. Let's use the right terminology. None of the hacking community would lay claim to taking advantage of this terrible catastrophe. The people doing this are worthless individuals just like to looters that are running around New Orleans stealing Jewelry and electronics (in a city with no electricity, no phone, and no internet.) People are living on their roofs because their houses are flooded or are living in homes with no running water, little to no food, and in many cases dead family members and friends in the house or on the sidewalk outside the house...... Crackers, spammers and looters need to be shot...

Score: 0

|

The hurricane is a dreadful natural disaster, and it's sickening to think that hackers are prepared to exploit the horrendous situation in an attempt to break into computers for the purposes of spamming, extortion and theft," added Cluley.

hackers are just a part of the scum of the earth ready to misuse others misery to their benefit. it is a pity our socalled "civilized" society has no other way to confront this evil then by trying to deal with it in a "civilized" way...even the death penalty would be too much honour...lets see if with the same speed and cunning, they caught the presumed authors of zotob, they could apprehend some of this filth....

Score: 0

|

Crackers, not hackers.

Hackers = People who hack forums to make them work better for their site
Hackers = People who hack graphics card drivers to make them faster

Crackers = People who break into something usually for personal gain at the expense of others.

Idiots who keep quoting 'hackers' when referring to crackers = People who *seriously* need to sort their terminology out before opening their mouths.

On your point though, yes *cr*ackers and scammers should have a little section of the internet all to themselves, and they can scam the crap out of each other.

Score: 0

|

Tragedies will bring out the best in most and, regretably, the worst in a few scum buckets.

Score: 0

|

Edit: oops misread the article. Anyway this always happens remember 911. Some people have no shame.

Score: 0

|

Some people will do anything for the Almighty Dollar, or to stoke their own sense of power and accomplishment.

I'm actually glad the media, at least around here, is focusing more on the relief efforts than the scamemr, looter, and others looking to make profit/personal gain from this tragedy.

Let them deal with the greedy once the emergency has subsided.

Score: 0

|

People can be real a$$holes.

Score: 0

|

I hope they catch at least one of these scmamers. Freeze all of their assets and put them all into the relief eforts.

Score: 0

|

Or, even better, house them with the 15,000 or so refugees in a sports stadium, with "Hurricane Scammer" written on their T-shirts.

Score: 0

|

There's enough violence and pain in that dome right now as it is. No need to add to it.

Simply donate their finances to the relief effort. Then deport their asses to another country and let them deal with 'em.

Score: 0

|

"Then deport their asses to another country and let them deal with 'em."

what?

Score: 0

|

I should be more specific. The scammers, not the victims. :P

(It was a joke...you'd have to be up on your Irish history to get it though...sorry)

Score: 0

|

Don't wait for Microsoft's patch: Secure Windows now from today's 0-day

Microsoft is recommending users simply get rid of a vulnerable ActiveX control that no one even uses any more. We'll show you how to do that right now.

Nokia: Android? Are you crazy?

Rumors about new Android devices abound, but Nokia squashes this one.

Symantec goes live with Norton 2010 betas

Norton Internet Security and Norton Antivirus 2010 are now available for testing.

What's Now: Drenched with 'Purple Ra1n,' iPhone users caught eating 'redsn0w'

Plus: Symantec and McAfee go to war, and what's LucasArts building in its top-secret, moon-shaped orbital facility?

In New York, online booze loses a Circuit Court decision

Court worried about gangster influence if liquor purchased directly.

British Telecom sacks bitterly unpopular Phorm ad platform

Phorm under BT is no more, but the targeted ad service could still go on under Virgin or TalkTalk.

CBS is the last man standing against Hulu

Popular streaming syndication site Hulu now has all the major networks in its camp except CBS.

Not just Vista: The operating system is dying, too

Carmi Levy: Wide Angle Zoom Vista's troubles point to a bigger shift that will affect more than just Microsoft.

Bolt: the dark horse mobile browser

Bitstream's small-footprint mobile browser is available in Beta 3

IE8 WSUS update push to begin August 25

After months of availability to users willing to seek it out, Internet Explorer 8 will be rolled into Windows Server...

Geeks vs. journalists: A tale of two worldviews

Recovery with Angela Gunn Why geeks think most mainstream journalism is flaky, and why the mainstream thinks geeks are trying to kill them. (They're both right.)

Can Linux do BitLocker better than Windows 7?

Betanews kicks off a new series with a look at how the Linux operating system's FDE stacks up against BitLocker, the Windows feature that today commands a $120 premium.

Windows 7 ISO Verifier 1.0

July 6 - 5:40 PM ET

ProgDVB 6.10.2

July 6 - 5:19 PM ET

FreeBSD 8.0 Beta 1

July 6 - 4:58 PM ET

K-Lite Codec Pack 64-bit 2.5.0

July 6 - 3:55 PM ET

SysCheckUp 1.4.0

July 6 - 3:34 PM ET