Jump to content

International click-fraud bot strikes close to a million victims worldwide


Batu69

Recommended Posts

The risks are high to unwitting victims with PCs tampered by the botnet.

 

A botnet which has infected systems around the world counts almost one million victim PCs within its network, researchers say.

Botnets are networks of PCs which have been infected with malicious software designed to take control of the system without the owner's knowledge. This can lead to 'slave' PCs being forced to send spam or launch distributed denial-of-service (DDoS) attacks against web domains, but controllers may also redirect slave PC users to malicious domains.

 

Another feature of botnets is altering PCs to change where traffic goes in the quest for ad clicks. If the operator tampers with internet configuration settings, they can forward searches to third-parties which manipulate search engine results to push users towards pages injected with ads that generate money for the cybercriminals.

 

One botnet which has been in operation since 2014 has managed to spread across country borders and is now potentially earning vast amounts of fraudulent revenue for the group, having infected at least 900,000 PCs worldwide.

 

In a blog post, researchers from Bitdefender said the botnet is based on the Redirector.Paco Trojan, which often finds its way onto systems as bundled software with installers for popular applications such as WinRAR or the YouTube Downloader.

The malware is added to legitimate installers through specialized tools.

If an unwitting victim uses the installer, they are infected and their PC now belongs to the network.

Bitdefender says that victims are mainly from India, Malaysia, Greece, the US, Italy, Pakistan, Brazil and Algeria.

 

map-location-botnet.jpg

 

Link to comment
Share on other sites


  • Replies 1
  • Views 521
  • Created
  • Last Reply
straycat19
5 hours ago, Batu69 said:

In a blog post, researchers from Bitdefender said the botnet is based on the Redirector.Paco Trojan, which often finds its way onto systems as bundled software with installers for popular applications such as WinRAR or the YouTube Downloader.

The malware is added to legitimate installers through specialized tools.

 

This is why you only install software that you download directly from the developer or software company and never use downloads of that software you get from other sources.  Even cracks and patches have been known to be repacked with malware included.  Using this software is like playing russian roulette with 5 of the 6 chambers loaded in the revolver.

Link to comment
Share on other sites


Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...