Jump to content

Microsoft leads FBI & Interpol coalition to destroy million strong botnet


Batu69

Recommended Posts

cme_graphic_story.jpg

Discovered in 2011 the Win32/Dorkbot malware has spread to over a million Windows PCs worldwide. During the last six months alone it had been infecting over 100,000 machines a month. Microsoft announced on Wednesday they had teamed up to enact a coordinated malware eradication campaign to disrupt the botnet.

The malware has been spread via a number of routes including USB drives, IM clients, Social Networks, Email and Drive-by downloads. Its primary aim was to steal online user credentials and any information that can personally identify you. It is also able to install yet more malware to your PC from command and control servers.

In order to take down Win32/Dorkbot, Microsoft worked with a number of organizations including ESET, Department of Homeland Security, Europol, FBI and Interpol. The take-down joins a long list of ongoing successful efforts to disrupt malware networks.

Whilst not much was given away on actual specifics of the dismantling technique used, we do know it’s based on their established Coordinated Malware Eradication initiative. The CME program aims to co-ordinate information exchange and response from six key sectors. The goal being: Prosecute, Starve, Identify & Block, shun and set policies. Microsoft strategically cooperating with a diverse set of businesses and institutions, with each having their own role to prosecute in the operation.

  • Security vendors: By sharing detection methods, malware behavior, and unpacking techniques, vendors can more quickly identity and block the malware families as they appear on network-connected endpoints and servers.
  • Financial institutions, online search, and advertising businesses: With better fraudulent behaviour identification, these organizations can starve malware authors of their ill-gotten gains.
  • CERTs and ISPs: Armed with vetted lists, CERTS and ISPs can block and take down deploy sites, and command and control servers.
  • Law enforcement: Using correlated evidence, law enforcement can prosecute the people and organizations behind the malware.

malware_eradication.jpg_story.jpg

Microsoft’s own real-time security such as Windows Defender is equipped to remove this threat automatically. Advice on how to not become infected remains very much the same.

  • Be cautious when opening emails or social media messages from unknown users.
  • Be wary about downloading software from websites other than the program developers.
  • Run antimalware software regularly.

Microsoft also provides some additional tools which can scan and remove this family of malware. Microsoft Safety Scanner & Malicious Software Removal Tool. Source: Malware Protection Center

Article source

Link to comment
Share on other sites


  • Replies 6
  • Views 1.4k
  • Created
  • Last Reply

Perhaps they could do the same for Daesh

Obama was the biggest promoter of the PS4, the preferred communication device of Daesh.

Link to comment
Share on other sites


  • Administrator

I must say, whenever a big botnet has been stopped, especially spam botnets, the effectiveness have noticeably been quite fast and useful.

Link to comment
Share on other sites


The malware has been spread via a number of routes including USB drives, IM clients, Social Networks, Email and Drive-by downloads. Its primary aim was to steal online user credentials and any information that can personally identify you. It is also able to install yet more malware to your PC from command and control servers.

M$ should be experts in this field because they basally do this to everyone that uses there O/S . But they don’t have to steal the info you agree to let them do it. They know who everyone is regardless of what privacy methods you use . One post is about how there opening data centers in the word to protect users privacy while they invade it themselves and are in bed with US government the whole time. They try to protect some drug dealers email but help the Government go after hackers ? What's wrong with this picture.

If it was not for companies like Microsoft and Google the Government would not have half the info they get today . :P

Link to comment
Share on other sites


Windows has never been spread likke that malware doeshave you ever heard of windows spreading something in a drive by download no. Your exaggerating the problem going on with microsoft.

Link to comment
Share on other sites


Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...