Botnet Command and Control - Security - News & Reviews - eWeek.com | eWeek

Botnet Command and Control

Botnet Command and Control
Written By
eWEEK EDITORS
eWEEK EDITORS
May 28, 2012
2 minute read
eWeek content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More


Botnet Command and Control

Botnet Command and Control

This shows one of the simplest spreading mechanisms bots use: raw executable code included in a simple field (in this case, the topic of a channel). Once connected, the victims computer would then download this code and run it.


Botnet Command and Control – Welcome Message

2

This is an example of the welcome message from a live botnet IRC session. This is what a victim machine would see — lots of cryptic data (potentially code), an IRC connect message, and the nickname of the victims computer, shown here as GBR|SP2|XP|#


Botnet Command and Control – Rogue Hosts

3

This screenshot shows what it actually looks like when you log in to a suspicious channel with rogue hosts. Included is your cryptic controller bot (@x) and you. In this case, the IRC channel is a ghost town, likely moved on to another location, but l


Botnet Command and Control – Bots in Action

4

This is a sample of what these bots do once they get onto the host machine. This is pulled from a live site (hostname and get tags removed) with referrer URLs from many, many unique IPs (also removed to preserve victim identity). In this sample, you c


Advertisement

Botnet Command and Control – Shellcode Execution

5

This is a snippet of attempted shellcode execution against cmd.exe.


Botnet Command and Control – Exploit Attempt

6

This shows an NTLMSSP (NT Lan Manager Secure Service Provider) exploit attempt.


Botnet Command and Control – Eavesdropping

7

Eavesdroppers listening in on botnet command-and-control communications can see thousands of connected bots waiting for instructions from a bot herder.


Botnet Command and Control – Eric Sites

8

Eric Sites, vice president of research and development of Sunbelt Software conducts a live demo of communications with a botnet command and control.


Botnet Command and Control – Patrick Jordan

9

Veteran anti-spyware researcher Patrick Jordan has found a clear connection between the botnet scourge and the upsurge in adware installations.

eWeek Logo

eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site's focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.