Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

MajorGeeks.com - Serious software for the not so serious geek.

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews



IObit Black Friday Sale

spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. GS Auto Clicker
2. Macrium Reflect FREE Edition
3. Mozilla Firefox
4. Smart Defrag
5. MusicBee
6. Microsoft Visual C++ 2015-2022 Redistributable Package
7. Sergei Strelec's WinPE
8. Visual C++ Redistributable Runtimes AIO Repack
9. Dolby AC-3/AC-4 Installer
10. McAfee Removal Tool (MCPR)
More >>

top reads

Star Lossless vs Lossy: When FLAC, APE, and ALAC Beat MP3 and When They Don't

Star Google Search Tricks You'll Actually Use in 2025 and Beyond

Star Fresh PC Checklist: First 12 Things to Do On a New Windows 11 Machine

Star Running AI Models Locally: What They Are, Where to Find Them, and How to Get Started

Star Deciding Between Idle State, Sleep Mode, and Shutdown: What's Best for Your PC?

Star How to Fix VMware Workstation "The Update Server Could Not Be Resolved" Error Installing VMware Tools

Star How to Remove Google Gemini from Your Phone (and Your Life)

Star Windows Bloat Removal Guide: Debloat Safely and Keep What You Need

Star Windows 11 Repair Playbook: SFC, DISM, CHKDSK Without Breaking Stuff

Star Gmail Using Your Emails and Attachments for AI Training: Here's How To Opt Out


MajorGeeks.Com » News » February 2013 » Microsoft and Symantec collaborate to disable click-fraud botnet

Microsoft and Symantec collaborate to disable click-fraud botnet


Contributed by: Email on 02/07/2013 04:08 PM [ comments Comments ]


Microsoft and Symantec worked with US and Spanish officials to take down the Bamital click-fraud botnet which has been operating since at least 2009 and was, at one point, made up of more than 1.8 million compromised systems. According to a report in Kaspersky Lab's threatpost, infected computers would have their searches intercepted and redirected to the botnet operators' servers, along with the search terms that were originally entered. This would allow the botnet operators to sell the clicks of these users to other criminals and redirect traffic to their web sites.

The botnet's distribution apparently peaked at the end of 2011 and the beginning of 2012. Microsoft filed a lawsuit against the botnet's operators, who turned out to be based in Russia and Eastern Europe, on 31 January 2013 and was granted a court order to go after the botnet's command & control (C&C) servers a few days later. On 6 February, Microsoft and officials from the US Marshals Service seized data and evidence from web hosting companies in New Jersey and Virginia to disrupt the botnet's operations. Symantec, working with Spanish officials, including the Guardia Civil, analyzed a C&C server of the botnet and found that it was receiving 120,000 connections a day from more than 200 countries.

Victims were infected through drive-by attacks or malware bundled with applications downloaded from peer-to-peer networks. The drive-by attacks were mostly carried out from compromised pornography web sites. The Phoenix exploit pack and other methods were used to infect machines with the Bamital trojan, which once installed, set a browser cookie with the name "yatutuzebil", Russian for "I was already here". The Bamital trojan comprised three parts: a command & control module, a component that hijacked the search engine results on a user's machine and a third module that created traffic on web sites without the user's interaction. This third module "clicked" on web site links and ads in the background of existing web sessions to generate revenue.

Microsoft said the operation was their sixth botnet takedown in the last three years and its second such co-operation with Symantec. Kelihos, Nitol and some Zeus botnets are among those previously taken down by Microsoft actions.






« Mama said "No son of mine is gonna play any foos-ball" in Arkansas · Microsoft and Symantec collaborate to disable click-fraud botnet · Kaspersky update paralyses computers with XP »




Comments
comments powered by Disqus

MajorGeeks.Com » News » February 2013 » Microsoft and Symantec collaborate to disable click-fraud botnet

© 2000-2025 MajorGeeks.com
Powered by Contentteller® Business Edition