Do we have a Boinc virus? |
![]() |
| log in |
Message boards : Number crunching : Do we have a Boinc virus?
Previous · 1 · 2 · 3 · 4 · 5 · 6 . . . 27 · Next
| Author | Message |
|---|---|
if i had to make a suggestion, i'd say inform all the right places about what boinc is, before they make their own assumptions, that would be a good path towards damage controlThat begins to sound better, but is still not sufficent. What we need is publicly showing and punishing such cheaters - having Black Boards on the official BOINC and project web sites, where such people will be displayed, accounts and credits removed, and their credits removed from all their present and former teams too. If such people are legally persecuted, it also needs to be shown there - so that it serves as a sufficinet deterrent for other potential followers. If people are fired because of illegally installing BOINC in their jobs, it should be shown there too. agreed, but not just for seti, the stats sites need to be informed i use boincstats as my personal "stats service" choice, and when there was a user from rosetta, claiming a HUGE amount of credit (like TC of a few zillion!) it was obvious, and there was not way they could have got that much in just a few days/weeks as it was obviously messing up the stats, willy (the boincstats admin) bannded/removed his stats from the site, and informed the rosetta projects admins of the situation so come colaboration between projects needs to happen, so that a user doesn't just commit his deeds elsewhere, "public" needs to be BOINC wide (stats sites included), not just public on one project (not everyone does SETI) | |
| ID: 240314 · | |
Hmm, very interesting and very dangerous for the project and for the community!!! Can someone of the people here having direct wire to Rom or others at Berkeley assure that they are aware of it, and taking the necessary steps to avoid banning BOINC by antimalware, antivirus and firewall software and before it makes news in some IT magazines? I've mailed Rom and Matt with a link to this thread. ____________ "I'm trying to maintain a shred of dignity in this world." - Me | |
| ID: 240334 · | |
if i had to make a suggestion, i'd say inform all the right places about what boinc is, before they make their own assumptions, that would be a good path towards damage controlThat begins to sound better, but is still not sufficent. What we need is publicly showing and punishing such cheaters - having Black Boards on the official BOINC and project web sites, where such people will be displayed, accounts and credits removed, and their credits removed from all their present and former teams too. If such people are legally persecuted, it also needs to be shown there - so that it serves as a sufficinet deterrent for other potential followers. If people are fired because of illegally installing BOINC in their jobs, it should be shown there too. Agree! ____________ http://www.mikesbawx.org/photo/ | |
| ID: 240341 · | |
it's the same as with guns, guns don't kill people, people kill peopleExplain to the Gestapo it was not you who killed H. Heidrich even if it is apparent your gun was used. I believe what others are saying here is that we are not going after the gun, but rather the person who pulled the trigger. In this case, SOMOONE may have infected many machines with a trojan who's payload was SETI that logs in and claims credit with the OFFENDERS account number. Just because we want to go after the guy, does not mean we want to go after the unsuspecting public whose computer was merely compromised by an unknown (Unknown only to the public because S@H folks know who he is). ____________ http://www.mikesbawx.org/photo/ | |
| ID: 240342 · | |
|
I wrote to Carsten Giese and had a brief reply telling just that he does not know how to write viruses. There was no word of explanation of the appearance of his BOINC account in computers of other people, in his answer though. And of course, you do not need to know how to write viruses if you use a widely available kit and just replace the content. | |
| ID: 240350 · | |
|
We have to remember that this is being installed on computers without the knowledge and permission of the owners. Even though Boinc and SETI are not responsible they are the focus of this exploit. Users that don't know about the projects will associate the projects as a virus or trojan. The purpose of this thread was to get some input from the forum members to see if they came to the same conclusion we came to at Team Starfire and to let the powers to be at Boinc and Seti know about this user. The main thing now is to get him shutdown and hopefully they will find the carrier of this exploit and stop it. | |
| ID: 240354 · | |
|
Just my simple opinion here. | |
| ID: 240357 · | |
|
If someone maliciously used Carstens' account, I wonder how they got his "key" and/or password? | |
| ID: 240361 · | |
Just my simple opinion here. true, and i totally agree with prevention before cure, but the fact of the situation is that it's already happened and most users are unaware of security issues, how they can be infected, and how they can prevent infection so i agree that damange control needs to be done, by informing all the major "security companies" about BOINC and what it does (and that it isn't bad) which will help a lot, also emailing a few of the major "process information" sites will help too, as this is where a lot of users will get info about a suspected file | |
| ID: 240362 · | |
If someone maliciously used Carstens' account, I wonder how they got his "key" and/or password? must have, i don't know of any other way to attach | |
| ID: 240363 · | |
|
While it's positively, absolutely not Seti/Boinc/Berkeley's fault, the Boinc folks will almost certainly need to get ahead of it if in nothing else other than the PR side of things. | |
| ID: 240364 · | |
If someone maliciously used Carstens' account, I wonder how they got his "key" and/or password? someone with access to the harddisk of his networked computer/laptop at work/client. an unhappy client with a packet sniffer. any of the multitude of rampant keyloggers out there. otoh, why didn't he come to the boards/helpdesk when he last checked his machines? (or did he) | |
| ID: 240365 · | |
If someone maliciously used Carstens' account, I wonder how they got his "key" and/or password? I see keys in the help desk often. Noobs don't know better. ____________ Questions? Answers are in the "Unofficial" BOINC Wiki. Boinc V7.0.27 Win7 i5 3.33G 4GB, GTX470 | |
| ID: 240366 · | |
|
Not sure exactly what's going on here, or if there's even anything to be worried about. But back in Classic there was at least one time when a virus circulated around the internet that, among other things, would download SETI@home and start crunching workunits for random users. So we've been there, done that. | |
| ID: 240370 · | |
Not sure exactly what's going on here, or if there's even anything to be worried about. But back in Classic there was at least one time when a virus circulated around the internet that, among other things, would download SETI@home and start crunching workunits for random users. So we've been there, done that. Matt ... thanks for your post and info ____________ | |
| ID: 240371 · | |
If someone maliciously used Carstens' account, I wonder how they got his "key" and/or password? True enough. Carsten isn't a noob though | |
| ID: 240375 · | |
If someone maliciously used Carstens' account, I wonder how they got his "key" and/or password? Or better yet, why why? whats the point? Why not rack up your own credits :) ____________ http://www.mikesbawx.org/photo/ | |
| ID: 240379 · | |
If someone maliciously used Carstens' account, I wonder how they got his "key" and/or password? Unless Carston is doing it for himself..DUH? ____________ http://www.mikesbawx.org/photo/ | |
| ID: 240380 · | |
If someone maliciously used Carstens' account, I wonder how they got his "key" and/or password?If someone maliciously got mine I think I would notice something was wrong. RAC's don't grow like that for nothing. ____________ http://www.teamstarfire.org/ | |
| ID: 240398 · | |
|
It looks like its a modified Worm called "Hadra" that's being used. http://www.f-secure.com/v-descs/hadra.shtml Member of SETI Distributed Network ____________ http://www.teamstarfire.org/ | |
| ID: 240407 · | |
Message boards : Number crunching : Do we have a Boinc virus?
| Copyright © 2013 University of California |