Video | Agriculture | Confidence | Economy | Energy | Employment | Finance | Media | Property | RBNZ | Science | SOEs | Tax | Technology | Telecoms | Tourism | Transport | Search

 


Symantec and Microsoft Tackle Click Fraud Botnet

Symantec and Microsoft Tackle Click Fraud Botnet

Symantec and Microsoft have joined forces to successfully tackle the Bamital botnet, which helped cyber gangs steal more than US$1.1 million annually.

Symantec has been tracking this botnet since late 2009 and recently partnered with Microsoft to identify and shut down all known components vital to the botnet's operation.

Bamital is a malware family whose primary purpose is to hijack search engine results, redirecting clicks to an attacker controlled command-and-control (C&C) server. The C&C server redirects the results to websites of the attackers' choosing.

Bamital also has the ability to click on advertisements without user interaction. This results in poor user experience when using search engines along with an increased risk of further malware infections.

The malware’s origin can be tracked back to late 2009 and has evolved through multiple variations over the past couple of years. Bamital has primarily propagated through drive-by-downloads and maliciously modified files in peer-to-peer (P2P) networks.

From analysis of a single Bamital C&C server over a six-week period in 2011 we were able to identify more than 1.8 million unique IP addresses communicating with the server, and an average of three million clicks being hijacked on a daily basis.

Recent information from the botnet shows the number of requests reaching the C&C server to be well over one million per day.

Clickfraud, the name used for the type of fraud committed by Bamital, is the process of a human or automated script emulating online user behaviour and clicking on online advertisements for monetary gain.

Bamital redirected end users to ads and content which they did not intend to visit. It also generated non-human initiated traffic on ads and websites with the intention of getting paid by ad networks.

Bamital was also responsible for redirecting users to websites peddling malware under the guise of legitimate software. The following video illustrates how Bamital exploits the online advertising model: http://www.symantec.com/tv/allvideos/details.jsp?vid=2142222223001&subcategory=security_response&pid=1

Bamital is just one of many botnets that utilise clickfraud for monetary gain and to foster other cybercrime activities. Many of the attackers behind these schemes feel they are low risk as many users are unaware that their computers are being used for these activities.

This takedown sends a message to those attackers that these clickfraud operations are being monitored and can be taken offline.

For further details on Bamital's activities you can download a copy of our whitepaper.

Details on recovering from a Bamital infection are available here: http://www.norton.com/bamital. Users of up-to-date Symantec security products are protected against Bamital and its variants.

Symantec Security Response would like to acknowledge Spain's Civil Guardia, Catalunyan CERT (CESICAT), and Microsoft for assisting us in understanding and ultimately bringing this botnet to its demise.

ends

© Scoop Media

 
 
 
 
 
Business Headlines | Sci-Tech Headlines

 

BusinessDesk: APN's NZME Sees Future In Paywalls, Growth In Digital Sales

APN News & Media has touted a single newsroom concept for its NZME unit in New Zealand, similar to what Germany's Die Welt uses, saying an 'integrated sales proposition' is helping it win market share, including ... More>>

Labour Party: Global Milk Prices Now Lowest In 6 Years

The latest fall in the global dairy price has brought it to the lowest level in six years and shows there must be meaningful action in tomorrow’s Budget to diversify the economy, says Labour’s Finance spokesperson Grant Robertson. “Dairy prices ... More>>

BusinessDesk: NZ Inflation Expectations Creep Higher In June Survey

May 19 (BusinessDesk) - New Zealand businesses lifted their expectations for inflation over the next two years, sapping any immediate pressure on the Reserve Bank to cut interest rates, and prompting the kiwi dollar to jump higher. More>>

BusinessDesk: Lower Fuel Costs Drive Down NZ Producer Input, Output Prices

May 19 - Producer input and output prices fell in the first quarter, mainly reflecting lower fuel costs and weakness in prices of meat and dairy products. More>>

Media: Fairfax Media NZ Announces Senior Editorial Team

Fairfax Media New Zealand has today confirmed its new editorial leadership team, as part of a transformation of its newsrooms aimed at enhancing local and national journalism across digital and print. More>>

Science: Flavonoids Reduce Cold And Cough Risk

Flavonoids reduce cold and cough risk Research from the University of Auckland shows eating flavonoids – found in green tea, apples, blueberries, cocoa, red wine and onions – can significantly reduce the risk of catching colds and coughs. The research, ... More>>


BusinessDesk: RBNZ House Alert Speech The Catalyst For Government Action

Prime Minister John Key all but conceded that pressure from the Reserve Bank of New Zealand for concerted action on rampant Auckland house prices was one of the main catalysts for the government's weekend announcements about tightly ... More>>

BusinessDesk: How To Fall Foul Of The New Housing Tax Rules: Tips From IRD

Just because you rented out your investment property doesn't absolve you from paying tax, says the Inland Revenue Department in a summary of commonly made mistakes by non-professional property investors when it comes to their tax liability.More>>

Legal: Superdiversity Law, Policy And Business Stocktake Announced

Mai Chen, Managing Partner at Chen Palmer New Zealand Public and Employment Law Specialists and Adjunct Professor of Law at the University of Auckland, today announced the establishment ... More>>

Housing: More House Price Gains Expected

House price expectations remain high, with a net 56% of respondents expecting house prices will increase. Fears of higher interest rates are fading, consistent with the RBNZ’s signals this year. Affordability and a lack of houses for ... More>>

TDDA: State-Of-The-Art Drug Testing Laboratory To Open In Auckland

World leading drug testing agencies, The Drug Detection Agency (TDDA) and Omega Laboratories, open New Zealand laboratory More>>

Network: Bigpipe Launches Ultra-Fast Broadband Into Wellington

Bigpipe Launches Ultra-Fast Broadband into Wellington Naked broadband provider Bigpipe has extended its national reach, announcing today, the launch of its unlimited UFB offering into Wellington. The Spark Venture business is giving Wellingtonians the ... More>>

Get More From Scoop

 
 
 
 
 
 
 
 
 
Business
Search Scoop  
 
 
Powered by Vodafone
NZ independent news