Quantcast
PC World: Technology Advice You Can Trust
Find a Review
Free Newsletters
Receive the latest reviews, how-to's, news, and more.
Consumer Advocate
Weekly Brief
Daily Technology News
WiFi Finder
Locate wireless services by a specific address, city, state, country, airport, or zip code.
RSS Feeds
Get our latest content via convenient RSS feeds.
Latest News
Today @ PC World
Become a PCW Member
Join the community and start enjoying the benefits:
  • Get tech advice from thousands of PC World Members
  • Rate and recommend the latest tech products
  • Share your thoughts in blog and article comments
  • Get free excerpts and exclusive discounts on Super Guides
Read More About: SpamScams & HoaxesViruses & WormsHackers

Phishing Scam Uses Google Maps

Victims in Australia, Germany, and the U.S. are being targeted by a phishing scam that reveals their location using Google Maps.

Darren Pauli, Computerworld Australia

Tuesday, February 20, 2007 6:00 AM PST
Recommend this story?

Account holders with at least two Australian banks have become victims of a phishing scam in which malicious code reveals the physical location of affected IP addresses using Google Maps. Bank account holders in Germany and the U.S. have also been targeted.

The software installs a trojan capable of key-logging user activity, hijacking infected computers.

The scam was circulated as a false news report claiming the Australian prime minister had suffered a heart attack. It installs a trojan and backdoor code to capture all user input as well as compromising a Web server to allow the hacker to hijack the victims' computer.

The hacker is then provided with details on the number of infected machines in each country, while the Google Maps server is used to translate IP information to pinpoint the machines' physical location.

Websense Australia and New Zealand country manager Joel Camissar believes hackers could potentially use Google Maps to assist in identity theft.

"The hackers could correlate user information acquired from the key-logger with knowledge of where a user is located from Google Maps to masquerade as them," Camissar said. "With this they could access bank accounts and social security numbers."

Camissar said there are around 750 infected desktops in Australia.

Westpac and the Commonwealth Bank were among those specifically targeted in Australia, while Bank of America and Germany's Deutsche Bank were also attacked. Westpac and the Commonwealth Bank were unavailable to comment at the time of publication.

Sophos senior technology consultant Graham Cluley said users are directed to a 404 error page which downloads the code.

"Recipients of the e-mail are encouraged to click on a link to obtain the latest information on Howard's health; however, this link takes users to a Web page which downloads malicious code to their PC, and then displays the real '404 page not found' error page," Cluely said.

"The scammers have registered several domain names that appear to be associated with a newspaper, and have gone to great effort to make people think that they really are visiting the genuine site by pointing to a real error page." "Everyone should be on their guard against this kind of e-mail con-trick, or risk having their PC infected."

Camissar was unsure whether Websense acquired the information through sample code provided by AusCERT or by accessing the hackers' servers.


Recommend this story?

Comments
Latest News
Samsung Electronics will unveil this weekend the first prototype of a new LCD (liquid crystal display) technology that won't... 16-May-2008
With all the time spent on the road, most drivers consider their cars to be their second homes. Reaching their primary home... 16-May-2008
Internet users in China have begun expressing solidarity with the victims of Monday's earthquake via their instant messaging... 15-May-2008
Sony has promoted a senior executive at its U.S. games studio to lead its global studios, it said Friday. 15-May-2008
Fujitsu has developed a prototype electronic paper screen that tackles one of the technology's biggest weaknesses: the amount... 15-May-2008
The One Laptop Per Child Project and Microsoft plan to make both Windows and Linux available on a version of the project's XO... 15-May-2008
Yahoo has responded to investor Carl Icahn's threat to take control of Yahoo's board and force it back to the negotiating... 15-May-2008
Billionaire investor Carl Icahn's proxy fight for Yahoo is aimed at reigniting merger talks between the Internet company and... 15-May-2008
When Apple ships its iPhone 2.0 update--and the accompanying App Store for distributing third-party software for the... 15-May-2008
Amit Singh thought something was missing from OS X. The Google engineer--and author of Mac OS X Internals--took a look at what... 15-May-2008

PC World's Marketplace

PC World's Free Whitepapers

Name City
Address 1 State Zip
Address 2 E-mail (optional)