Categories: PCSecurityWorkspace

Microsoft And Symantec Buddy Up For Botnet Takedown

Microsoft continues to wage its corporate war against botnets after it teamed up with security specialist Symantec to raid data centres in America and take down the servers of a cyber crime gang

Technicians from both Microsoft and Symantec, in the company of US Marshals, raided data centres New Jersey and Virginia, and took down the servers that controlled the Bamital botnet.

Botnet Takedown

“Today we are pleased to announce the successful takedown of the Bamital botnet,” wrote Symantec on a corporate blog posting. “Symantec has been tracking this botnet since late 2009 and recently partnered with Microsoft to identify and shut down all known components vital to the botnet’s operation.”

Microsoft seizing Bamital Evidence

It explained that Bamital was a Trojan that infected millions of computers worldwide. The Trojan acts by modifying search results and redirecting infected users to advertisement links.

“Bamital is a malware family whose primary purpose is to hijack search engine results, redirecting clicks on these results to an attacker controlled command-and-control (C&C) server,” said Symantec. “The C&C server redirects these search results to websites of the attackers’ choosing. Bamital also has the ability to click on advertisements without user interaction. This results in poor user experience when using search engines along with an increased risk of further malware infections.”

Meanwhile Microsoft revealed that all major search engines had been affected by the botnet, including Google, Bing and Yahoo.

“Microsoft and Symantec’s research shows that in the last two years, more than eight million computers have been attacked by Bamital, and that the botnet’s search hijacking and click fraud schemes affected many major search engines and browsers, including those offered by Microsoft, Yahoo and Google,” wrote Richard Domigues Boscovich, Assistant General Counsel, at Microsoft Digital Crimes Unit, in a blog post.

“Because this threat exploited the search and online advertising platform to harm innocent people, Microsoft and Symantec chose to take action against the Bamital botnet to help protect people and advance cloud security for everyone,” wrote Microsoft’s Boscovich.

Ongoing Fight

Both companies have been ‘proactively’ informing users if their computers were infected. And Microsoft revealed that this is the sixth botnet that Redmond has shut down in the past three years, and the second done in cooperation with Symantec.

Microsoft has been one of the most active anti-botnet forces in the IT industry in recent years.

In 2011 for example it seized several command and control servers being used to run the Rustock malicious network, which was responsible for sending out billions of spam emails every day at its peak.

It has also taken down the Zeus botnet and positively identified two members of the Zeus botnet crime ring and has also sought to bring to justice those behind the Kelihos botnet.

How well do you know Microsoft? Try our quiz and find out!

Tom Jowitt

Tom Jowitt is a leading British tech freelancer and long standing contributor to Silicon UK. He is also a bit of a Lord of the Rings nut...

Recent Posts

X’s Community Notes Fails To Stem US Election Misinformation – Report

Hate speech non-profit that defeated Elon Musk's lawsuit, warns X's Community Notes is failing to…

1 day ago

Google Fined More Than World’s GDP By Russia

Good luck. Russia demands Google pay a fine worth more than the world's total GDP,…

1 day ago

Spotify, Paramount Sign Up To Use Google Cloud ARM Chips

Google Cloud signs up Spotify, Paramount Global as early customers of its first ARM-based cloud…

2 days ago

Meta Warns Of Accelerating AI Infrastructure Costs

Facebook parent Meta warns of 'significant acceleration' in expenditures on AI infrastructure as revenue, profits…

2 days ago

AI Helps Boost Microsoft Cloud Revenues By 33 Percent

Microsoft says Azure cloud revenues up 33 percent for September quarter as capital expenditures surge…

2 days ago