Sality is a file-infecting virus that has been around for more than nine years. Sality has been ranked by Symantec as the number one malicious code family in 2010 by number of endpoint detections. It was apparently named after the Russian town of “Salavat City”, although the command and control servers are thought to be in the US, UK, and the Netherlands. It has been used to push spam, steal passwords, crack SIP accounts, and various other nasty things.
Friday, April 6, 2012
Zeus botnet - Operation b71
Zeus, often referred as Zbot is one of the popular crimeware botnet typically engaged in data theft. The term Zeus is used to refer to an entire family of trojans and their respective bot nets. It was reported by 2007. Zeus botnets are fundamentally simple computer networks otherwise called as a group of interconnected computers, built by a group of interested parties with a criminal motive, using the Zeus infection crimeware toolkits. The Microsoft blog claims that it has detected more than 13 million suspected
infections of this malware worldwide, with more than 3 million in the
United States alone.
For a better understanding, Zeus is a toolkit pack which aids a the user with a tool set required to build and administer a botnet. These tools are designed with a focus of stealing banking information. However they can also be used used
for other types of data or identity theft. The toolkit is a marketable product of commercial value, which is sold to potential customers. They are also distributed freely. Like most botnet families, standards framework, Win32/Zbot is built on the client-server model and requires a command and control (C&C) server to which the bots connect to receive instructions from the botnet operator.
Subscribe to:
Comments (Atom)











