Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Subscribe
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Subscribe
    Home Cybersecurity
    • Cybersecurity
    • Networking

    Coreflood: April 2011

    By
    Fahmida Y. Rashid
    -
    April 28, 2011
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      PrevNext

      1Coreflood: April 2011

      1

      The Coreflood Trojan infected user computers and transferred banking credentials and other sensitive information to the botnet’s command-and-control servers. The FBI seized the servers April 13 and replaced them with new servers to push out new instructions to disable the Trojan on user machines.

      2Rustock: March 2011

      2

      U.S. Marshals seized servers located at five hosting providers in seven U.S. cities—Denver; Scranton, Pa.; Kansas City, Mo.; Dallas; Chicago; Seattle; and Columbus, Ohio—to shut down Rustock, which at one point was singlehandedly pumping out nearly half of the world’s spam. Microsoft also blocked the IP addresses controlling the botnet as part of the March 16 takedown.

      3Bredolab: October 2010

      3

      The Dutch National Crime Squad’s High Tech Crime Team seized 143 C&C servers controlling Bredolab and arrested the person running the operation Oct. 26, 2010. However, Blue Coat’s malware lab continues to see new samples of Bredolab malware, suggesting the botnet is “still running strong, just in a different form,” Cummins said. Since Bredolab was sold as an online kit, new networks could emerge with the same behavior and characteristics as the old one.

      4Cutwail/Pushdo: August 2010

      4

      Security vendor LastLine led the efforts to take down 20 of the 30 C&C servers associated with Pushdo in August 2010. Even though some of the servers weren’t shut down, Blue Coat researchers have not seen any Pushdo activity since December, so it appears safe to say Pushdo is inactive.

      5Waledac: February 2010

      5

      A Virginia federal judge issued a temporary restraining order that authorized Microsoft to cut off 277 Internet domains associated with Waledac on Feb. 22, 2010. However, Blue Coat researchers still intercept 80,000 to 150,000 requests resembling the original Waledac C&C traffic. There’s speculation that Waledac 2.0 and Kelihos are the same botnet.

      6Harnig/Piptea: March 2011

      6

      FireEye’s researchers noticed that C&C servers belonging to Harnig stopped responding shortly after Rustock was taken offline, suggesting there was some kind of a relationship between the two botnets. Even though there has been no Harnig-related activity for some time, with the servers remaining under the owners’ control, a resurrection remains possible.

      7Mariposa: March 2010

      7

      Security firms Defense Intelligence and Panda Security collaborated to shut down Mariposa in December 2009. Furthermore, police in Spain arrested three men who ran the botnet in March 2010. One of the largest malware botnets in operation at the time, it stole bank account details and log-in credentials, and used enslaved PCs to launch denial-of-service attacks.

      8Zeus/SpyEye: Ongoing

      8

      Zeus/SpyEye is a little unusual. While a few Zbot networks have been taken offline, it continues to proliferate because it is available on underground markets as a crimeware kit that anyone can use to create their own botnet, said Richard Wang, manager of Sophos Labs. “The takedowns of individual Zeus botnets are less significant,” said Wagner.

      9Win32/Swizzor: February 2011

      9

      Like Harnig, Swizzor appears to have ceased operations on its own. ESET’s researchers detected a decline in Win32/Swizzor infections and found that the botnet had stopped distributing new malware in February. Win32/Swizzor evaded detection through highly obfuscated code, frequent updates and anti-emulation tricks. It’s not known why Swizzor’s operators shut down.

      10Mega-D

      10

      The botnet is presumed long dead after the FBI arrested mastermind Oleg Nikolaenko on Dec. 2, 2010. The spam operation netted Nikolaenko $465,000 during a six-month period, authorities said.

      PrevNext

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.