Linked by Thom Holwerda on Wed 22nd Apr 2009 21:44 UTC
Privacy, Security, Encryption Researchers at security firm Finjan have uncovered a massive botnet of Windows machines. The botnet is 1.9 million machines strong, with many of the machines located in the United States: 45% of them are located in the US. The researchers detailed their findings at the RSA Conference in San Fransisco.
Thread beginning with comment 359984
To view parent comment, click here.
To read all comments associated with this story, please click here.
DittoBox
Member since:
2005-07-08

SMB shares most likely. I sincerely doubt the control server runs VNC that's open to anyone.

Reply Parent Bookmark Score: 2

KenJackson Member since:
2005-07-18

Whatever the mechanism, one has to wonder if they are clever enough to do the crime, they may well be clever enough to leave misleading information laying around for researchers to glom onto.

Reply Parent Bookmark Score: 2

merkoth Member since:
2006-09-22

And the fact that Windows has a marketshare of more than 90%. Even for specialized media, Windows is the computer.

Edit: Argh, wrong thread. This should be on "Computer Botnet", sorry.

Edited 2009-04-23 02:43 UTC

Reply Parent Bookmark Score: 2

libray Member since:
2005-08-27

The command and control system which was connected is probably a temporary, bot infected one itself. The C&C will change over time and there could be many dozens of them at a time.

The C&C most likely is not the bot masters system.

Reply Parent Bookmark Score: 2