|
Fighting Botnets with botnets
2008-04-23 15:28:00 Network Security Blog – Researchers at the University of Washington want to use their own botnet to fight malicious botnets on the Internet. Basically, the paper suggests using a swarm of the Phalanx, the name of their system, computers as proxies with a small crypto-puzzle being required of the connecting computer at the start of the conversation. ... read more
Botnets Declared a National Security Threat
2008-04-11 13:26:00 OuterVillage.com | Technology News & Ideas – The federal government is starting to realize the real threats of botnets around the world. U.S. homeland security secretary Michael Chertoff speaking at the RSA conference said that the US government has launched a cyber security Manhattan Project. The US is realizing that online attacks can be a form of devastating warfare, and equivalent in damage to physical destruction of ... read more
Pricelist for Botnets
2008-03-27 08:11:00 It is not new and I blogged several times on it: If you own a botnet, you can make quite some money. As the Law Enforcement is going after the bot herder I would not suggest you to enter this business, nevertheless. I just read an article today with a pricelist for botnets. Read it yourself: Spyware authors offer dollars for downloads Roger
¿De dónde vienen los 'correos basura'?
2008-03-18 11:51:00 Marshal, una empresa especializada en la seguridad del correo electrónico, ha hecho público un estudio sobre el origen del spam que inunda los buzones de todos los internautas. Los resultados dicen que más del 85% de los mensajes solicitados proceden de sólo seis remitentes, y que uno de ellos es responsable del 39% de los 'correos basura'.El informe señala que el spam se envía normalmente a través de botnets, redes de ordenadores esclavizados, infectados por virus que permiten a los remitentes de spam utilizar el PC de los internautas como plataforma de envío masivo de mensajes.Una de estas redes, a la que da el nombre de Srizbi, envía el 39% de los mensajes no solicitados. Estos correos no sólo incluyen publicidad, sino que intentan dirigir a quien los recibe a páginas web que infectan su ordenador con un virus que convertiría a su vez esta máquina en remitente spam.Además, los administradores de esta red de ordenadores esclavos o zombis reciben continuamente información sobre l...
Security: New BotSniffer better able to detect foul stench of botnets
2008-02-23 07:55:00 "Researchers at Georgia Tech have published a paper on BotSniffer?a program they’ve designed to detect and disable botnets. Botsniffer is not the only bot-detection program available, but the Georgia Tech research team believes that the program’s approach to the botnet issue results in a better correlation rate and a lower number of false positives. ShareThis Possibly ...
By: Malware Help Org
Security: Limelight kills botnets better than cops do
2008-02-23 07:38:00 "Botnet operators have become public enemy number-one as consumers, businesses and governments fall foul to identity theft, DDoS attacks and spam. Yet no one appears to be able to stop the spread of bots — except maybe the media. ShareThis Possibly relatedSecurity: What IT can learn from botnetsSecurity: New BotSniffer better able to detect foul stench of ...
By: Malware Help Org
Security: What IT can learn from botnets
2008-02-23 07:36:00 "Josh Corman is the host protection architect for Internet Security Systems, Inc. (ISS), with more than eight years of experience in security and networking software. What was refreshing was Corman’s out-of-the-box thinking on the distributed networks currently being used by online criminals. Of the most popular of these networks, he said "Storm did a ...
By: Malware Help Org
MayDay! Sneakier, More Powerful Botnet on the Loose
2008-02-08 14:14:00 "A new peer-to-peer (P2P) botnet even more powerful and stealthy than the infamous Storm has begun infiltrating mostly U.S.-based large enterprises, educational institutions, and customers of major ISPs. The MayDay botnet can evade leading antivirus products, and so far has compromised thousands of hosts, according to Damballa, which says 96.5 percent of the infected machines ...
By: Malware Help Org
Video: Botnets y Maquinas Zombies by Root3d
2008-01-24 04:33:00 Root3d creo un video muy bueno sobre botnets y maquinas zombies, no explica todo el proceso de creacion, pero se ve claramente el proceso de control, o sea como controla todas estas maquinas zombies mediante un servidor de irc.Tal vez para muchos que no saben del tema viendo este video se daran cuenta del poder que tienen con una botnet de unos cientos de maquinas zombies; puden realizar ataques ddos, realizar spam masivo, descargar, subir y ejecutar archivos en todas las pc, y muchisimo mas, todo de forma masiva, a diferencia de los troyanos.Y si pueden realizar estas actividades pueden ganar una gran cantidad de dinero con una botnet grande.El video pesa aproximadamente 75Mb, y dura unos 40 minutos, extension .avi. Todo el proceso esta claramente detallado por el autor.Dejo algunas imagenes del video:En esta imagen se ve la lista de todos los comandos del rxbot, proximamente la subire y la posteare.En esta imagen se ve como puede ver descargar, subir y ejecutar archivos a una pc z...
By: TROYANOS Y VIRUS
Competition May Be Driving Surge in Botnets, Spam
2008-01-09 15:20:00 A price war may be at least partially responsible for the recent increase in spam and botnet activity on the Internet, a researcher suggested this week. The operators of Nugache, one of the Web’s most sophisticated emerging botnets, appear to be expanding their network and slashing prices to customers who want to use it to ...
Killing botnets
2008-01-01 00:00:00 Panda Security is arming customers with new software Panda Security for Business Version 4.02SP1 that takes advantage of its "Collective Intelligence" strategy. The Madrid based company is bringing the Collective Intelligence approach to bear with integration between the latest version of Panda Security for Business and Malware Radar, an on demand service that provides an automated malware audit for customers.
By: Malware Help Org
Killing botnets
2007-12-23 00:00:00 Panda Security is arming customers with new software Panda Security for Business Version 4.02SP1 that takes advantage of its "Collective Intelligence" strategy. The Madrid based company is bringing the Collective Intelligence approach to bear with integration between the latest version of Panda Security for Business and Malware Radar, an on demand service that provides an automated malware audit for customers.
By: Malware Help Org
The Worlds Biggest Botnets
2007-12-18 07:01:00 Copyright © 2007 The Network Security. Org. Visit the original article at http://www.thenetworksecurity.o-rg/the-worlds-biggest-botnets.h-tml.You know about the Storm Trojan, which is spread by the world’s largest botnet. But what you may not know is there’s now a new peer-to-peer based botnet emerging that could blow Storm away. "We’re investigating a new peer-to-peer botnet that may ...
The Worlds Biggest Botnets
2007-12-18 07:01:00 You know about the Storm Trojan, which is spread by the world’s largest botnet. But what you may not know is there’s now a new peer-to-peer based botnet emerging that could blow Storm away. "We’re investigating a new peer-to-peer botnet that may wind up rivaling Storm in size and sophistication," says Tripp Cox, vice president ...
Botnets: Cracking Down on Cyber Crime - The FBI Reports
2007-11-30 00:00:00 It?s the season for online shopping and spending, and you?ll be glad to know that we?ve stepped up our fight against one of the most serious cyber security threats just in time for the holidays. Read More
Cyber Security Trends by PTLB: Botnets in India
2007-11-21 11:34:00 The Cyber Security Trends in India are not very encouraging.[1] To worsen the situation we have a weak Cyber Law in India.[2] This results in a weak protection against the menace of Botnets in India as well. This ?Trend Analysis? of PTLB TM/SM and Perry4Law is dealing with the nuisance of Botnets in India. Botnet ...
Hacker Pleads Guilty to Spreading Botnets
2007-11-10 15:59:00 PCWorld 10/11/2007Website: http://www.pcworld.com A hacker has pleaded guilty to infecting hundreds of thousands of computers with malware in order to steal money from Paypal accounts. He could spend 60 years in prison and face a US$1.75 million fine. John Schiefer, 26, admitted that he and some associates developed malware that allowed them to create botnet armies of as many as 250,000 computers. Schiefer was able to collect information sent from the infected computers, including usernames and passwords for Paypal accounts. He and his associates were then able to make purchases using the Paypal accounts. They also shared the password information with others. This is the first prosecution of a hacker for this type of activity, according to the United States Attorney's Office for the Central District of California. The Federal Bureau of Investigation pursued the case. Schiefer says he also found Paypal userna...
Botnets: Storm, Rbot, and Bobax - How to Beat Them
2007-11-09 21:42:00 If your Windows based computer is running slow, having random popups, and doing all sorts of weird things...chances are you’re a member of a botnet. Hackers are using your computer to email, spam, and infect other computers and users around the globe. You’re being used by these people to make money on the misfortune and deception of others. There is hope though...you can be rid of this. You can win against them.Install Linux on your computer today and all that will disappear. Linux doesn’t have botnets. Linux doesn’t have viruses (only a few known and you have to actually type a command to start the virus running). Linux has no spyware. If you’re just getting your start, I recommend PCLinuxOS, SimplyMEPIS, and Ubuntu.If you don’t want to install Linux, you can buy a computer with it preinstalled from various vendors here at the Pre-installed linux vendor database.Once you are set free from having to worry about being infected by some virus...
Online Casinos Hit By Botnets
2007-10-09 14:50:00 From the Reg: Botnets are fulfilling law enforcement fears that online casinos could prove fertile ground for money laundering, according to a recent, little-noticed report by risk compliance firm Fortent. Some are engaging in variations of an old casino scam, in which preprogrammed-to-lose bots transfer dirty money - obtained through stolen credit cards, illicit drug sales or ...
eBay: Botnets are Linux happy
2007-10-08 00:00:00 More interesting is that most of the compromised machines were not Windows machines. "The vast majority of [the phishing sites] we saw were on rootkit-ed Linux boxes, which was rather startling. We expected a predominance of Microsoft boxes and that wasn't the case."
By: Malware Help Org
FSecure sees smaller botnets on the rise
2007-10-08 00:00:00 Cybercriminals are downsizing their botnets to make it harder for software security companies to track and contain botnet operations, researchers say. Computers infected with a virus unknowingly become "zombies" in a botnet which is a network used to send out spam and to mount further attacks on other machines.
By: Malware Help Org
eBay phishers use Linux botnets (TechWorld)
2007-10-04 12:15:00 Sent to you by timsanae via Google Reader: eBay phishers use Linux botnets (TechWorld) via Yahoo! News Search Results for ebay on 10/4/07 Sophisticated, but The Sopranos... [[ This is a content summary only. Visit my website for full links, other content, and more! ]]
Six ways to fight back against botnets
2007-10-03 08:31:00 1. Hire a Web-filtering service. Web-filtering services are one of the best ways to fight bots. These services scan for Web sites exhibiting unusual behavior or known malicious activity and block those sites from users. Websense, Cyveillance and FaceTime Communications are examples. All monitor the Internet in real time to find Web sites ...
Cyber criminals building more but smaller botnets
2007-10-02 11:31:00 Cyber criminals building more but smaller botnetsBy Gemma Simpson, Special to ZDNet AsiaMonday, October 01 2007 07:48 AMCyber criminals are downsizing their botnets to try and trick software security companies. Computers infected with a virus unknowingly become 'zombies' in a botnet--which is a network used to send out spam and to mount further attacks on other machines. The zombie army can be controlled remotely with the botnet creators usually trying to build the largest possible botnet of compromised computers to rent out to gangs for as little as US$100 for a couple of hours. But researchers at antivirus company F-Secure have reported seeing these large networks being broken down into smaller groups of compromised computers because the creation of large botnets is not creating as much revenue for such cyber criminals. Mika Stahlberg, program manager of the security response team at F-Secure, said the company is still seeing very big botnets around the world but coders are no l...
claim your botnets!
2007-09-20 15:51:00 Botnets, Zombies DETECTED Kiddies love playing with zombies, and i am having fun protecting myself from such internet attacks. These are found flooding me. Too bad, i’m on secured annonymous connection. ~d423@ool-18b80df9.dyn.optonlin-e.net ~e2145@adsl-65-43-84-8.dsl.iplt-in.ameritech.net ~e7952@cpe-65-185-80-177.neo.re-s.rr.com ~q4316@ip70-161-203-52.hr.hr.co-x.net ~x749@c-76-20-178-196.hsd1.mi.c-omcast.net ~n1898@adsl-75-34-121-33.dsl.hs-tntx.sbcglobal.net ~d983@c-75-65-195-60.hsd1.ms.co-mcast.net ~k7644@cpe-72-224-245-69.maine.-res.rr.com ~w5732@ppp-70-229-30-181.dsl.ip-ltin.ameritech.net ~m3425@cpe-65-185-92-215.neo.re-s.rr.com ~p8185@adsl-75-16-245-122.dsl.k-ntpin.sbcglobal.net ~i9468@adsl-69-215-147-184.dsl.-milwwi.ameritech.net ~s8504@c-24-30-49-215.hsd1.ga.c-omcast.net ~r2343@12-201-126-134.client.mc-hsi.com ~l2580@ip68-2-114-246.ph.ph.cox-.net ~r712@c-76-26-68-211.hsd1.wv.co-mcast.net ~p1083@ool-18ba15e6.dyn.optonli-ne.net ~q1599@adsl-66-73-0-89.dsl.chcg-il.ameritech.net ~s9385@ip72.an...
Infrastructure threats: Botnets show DoS who's boss
2007-09-19 04:09:00 from InfoWorld 19/9/2007Website: http://www.infoworld.comSan Francisco (InfoWorld) - Malware-infected botnet PCs have overtaken DoS attacks as the top security issue facing Internet service providers and other Web infrastructure hosting players, according to a new survey of the organizations.Arbor Networks published the results of its third-annual Infrastructure Security Report on Monday -- a survey of 75 large ISPs, hosting companies, and other providers -- which found for the first time that botnets currently outrank DoS threats as the most serious concern for the firms.Tens of millions of PCs are likely infected with botnet programs worldwide, according to survey results, and Arbor researchers said the ISPs they questioned admitted to spending more time and resources battling botnets than ever before.Infrastructure providers are finding botnets hard to pin down, as the people responsible for controlling the zombie machines are increasingly employing more advanced detection evasio...
Masiva propagación de troyano de MSN creador de redes botnets
2007-09-12 13:28:00 ESET detecta a troyano creador de botnets propagándose activamente a través de mensajería Instantánea con mensajes en castellano, portugués e inglés.ESET, proveedor global de protección antivirus de última generación, anuncia la detección de un troyano de MSN que se está propagando masivamente en distintos países de Iberoamérica, ya que se envía con mensajes en español, portugués y también en inglés.El troyano Win32/SdBot ya es detectado por ESET NOD32 gracias a un rápido trabajo del laboratorio generando la firma contra dicho malware en un muy breve lapso de tiempo, ya que se reportó masiva propagación en países como Argentina, Uruguay, Chile y España.Este troyano es un bot que utiliza la mensajería instantánea como medio de propagación, pero que una vez infectado el equipo, toma control del mismo transformándolo en una PC zombi que forma parte de una botnet.ESET informó a principios de mes sobre la masiva propagación de troyanos bot creadores de las redes de zombis en su ranking e...
Troyano aprovecha blogs como medio de propagación
2007-09-03 12:23:00 ESET detecta al troyano Nuwar que crea post en distintos blogs con enlaces que simulan ser videos de YouTube, pero que terminan en la descarga de una botnet.ESET, proveedor global de protección antivirus de última generación, informa sobre la detección de troyanos utilizando los blogs como medio de propagación.El troyano en cuestión es el Win32/Nuwar, que es detectado proactivamente por ESET NOD32, lo que provoca que todos los usuarios del antivirus de ESET estén en todo momento protegidos contra esta amenaza y cualquier nueva versión de la misma, ya que existe una firma genérica que detecta todas las variantes de la familia Nuwar.El Nuwar aprovecha el servicio de blogs de Google llamado Blogger.com para crear nuevos posts en los blogs con mensajes en inglés y que apuntan a un supuesto enlace de YouTube con un video, pero cuando el usuario ingresa a ese enlace, en realidad está descargando el malware e infectando el equipo desde una dirección de IP específica.Este troyano es del tip...
Study: Botnets boosting click fraud rates on ads
2007-08-08 19:13:00 The overall industry average click fraud rate–which represents the number of clicks on online pay-per-click ads that are not legitimate–has jumped, according to a new report from search engine marketing firm Click Forensics. The overall click fraud rate was 15.8 percent for the second quarter, up from 14.1 percent from a year ago and 14.8 percent ...
Botnets Are Fun
2007-07-23 15:43:00 If you believe that, you probably also believe that there is a Prince in another country that needs your help to secretly move millions of dollars out of his village before he is killed. No, botnets are not fun and you absolutely need to protect yourself from them. Here is one great way to keep ...
Fast flux botnets
2007-07-16 18:20:00 Researchers at the excellent Honeynet Project have published a detailed paper on the growing phenomenon of what they call “fast flux service networks “. Essentially, criminals are now using DNS records with a short time-to-live that return hundreds of A records of compromized hosts. Both the NS records for the domain and the ...
The human cost of botnets
2007-07-07 16:31:00 Botnets and “Zombie PCs” - virus-infected computers that are programmed to send out spam mail - are well-known now, but what is less commonly acknowledged is the potential human cost of these machines. According to the FBI, there is a growing problem with vital systems being taken over by botnets to launch spam virus ...
Botnets Battle Over Turf
2007-04-27 07:50:00 More botnet-on-botnet turf wars have erupted — and intensified — over the past few months. Aside from the distributed denial-of-service (DDOS) attacks they launch against one another to disrupt their operations (like the recent DDOS battles between the Storm and Stration botnets), they also are constantly trying to hijack bots from one another. "Stealing is ...
Botnets by Email
2007-04-14 00:00:00 I make no effort to hide my email address, which means that I know the instant a new email based virus, phishing attack, or penny stock pumping scam launches when my inbox floods. Most such emails are easy to distinguish from legitimate emails because of their lack of personalization, poor grammar, or low quality images that attempt to foil spam filters.
By: Malware Help Org
Botnets for sale
2007-04-06 00:00:00 On the morning of February 2, 2007, someone launched a distributed denial of service attack on Domain Name Service (DNS) servers worldwide, temporarily shutting down 2 of the 13 global databases. However, the Internet, which relies upon a hierarchy of DNS servers to resolve common name addresses (such as CNET.com) into a numerical IP address, was in no great danger.
By: Malware Help Org
Botnets Go One-on-One
2007-03-02 18:40:01 The most savvy and sophisticated botnet operators are bringing out the big guns now — operating deeper underground and staging massive distributed denial-of-service attacks on their adversaries. Jose Nazario, senior software and security engineer with Arbor Networks, will give an inside look at the latest botnet movements and strategies in a briefing at Black Hat DC next week. Nazario, who is among the researchers who track botnets, says big changes are now underway in the botnet world. "The two biggest shifts we’re seeing are HTTP for very specialized botnets and the successful deployment of peer-to-peer botnets," Nazario says. "That’s pretty frightening, if you think about it." Dark Reading - Desktop Security - Black Hat: Botnets Go One-on-One - Security News Analysis botnet, denial of service attacks, Exploits & Vulnerabilities, Hacking, Network Security, Web Security
How many bots? How many botnets?
2007-02-22 18:28:01 I stopped really counting bots a while back. I insisted, along with many friends, that counting botnets was what matters. When we reached thousands we gave that up. Today, it is clear the bad guys can get their hands on as many bots as they need, or in a more scary scenario, want. They don't need that many.
By: Malware Help Org
Botnets Prefer Windows XP
2007-01-02 09:56:02 I found an interesting article on SecureWorks site. When SecureWorks finds an infected client, they make a note of the OS the infected client is running. Their site shows a pie-chart revealing the most popular Operating Systems in use in botnets. Here is a breakdown: 47.23% – Windows XP SP2 21.92% – Windows XP SP1 14.98% – Windows XP with no service packs installed 6.35% – Windows 2000 SP4 4.9% – Windows 98 4.62% – Others Not that I think SecureWorks would intentionally skew the results or do anything dishonest, but keep in mind that SecureWorks is partnered with Apple. This is interesting because it shows that the majority of the botnet is made up of computers that are fairly up-to-date as far as their OS goes. Tags: botnet, windows xp sp2, windows xp sp1, windows 2000, windows 98, apple, secureworks |



