R E L A T E D   C O N T E N T

Free email newsletters




ADVERTISEMENT

Evil Trojan twins control most of world's botnets

Sdbot and Gaobot malware groups responsible for 80 per cent of botnets

Clement James, vnunet.com 12 Apr 2007
ADVERTISEMENT

Two types of Trojan are responsible for the control of most botnets worldwide, a security firm revealed today.

The Sdbot and Gaobot malware groups were responsible for 80 per cent of detections related to bots during the first quarter of 2007, according to PandaLabs. Other culprits, although on a much lesser scale, included Oscarbot, IRCbot or RXbot.

Bots are automated worms or Trojans that install themselves on computers to carry out certain actions automatically, such as sending spam and turning the compromised computers into zombies. Botnets, or networks made up of computers infected with bots, have become a lucrative business model.

"This dominance is not so much due to any special features of Gaobot or Sdbot, but simply because their code is much more widely available on the internet. This means that any criminals that want to make a bot can simply base it on the source code of these threats, making any modifications they choose. Essentially, this saves them a lot of work," said Luis Corrons, technical director of PandaLabs.

In 2006, bots accounted for 13 per cent of all new threats detected by PandaLabs. Of those, 74 per cent belonged to the Sdbot and Gaobot families.

Until now, most of them were controlled through IRC servers, which allowed attackers to send orders while hiding behind the anonymity of chat servers, however, now there are bots that can be controlled through web consoles using HTTP.

"Control through IRC is useful for controlling isolated computers. However, this system is not so useful when it comes to botnets. By using HTTP, bot herders can control many more computers at the same time, and can even see when one of them is online or if the commands have been executed correctly," added Corrons.


All

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
Reading, Berkshire, United Kingdom | EDS
System Integrator - Applications Hosting Location - Reading Job Description: A skilled System Integrator to integrate Microsoft based applications to support business requirements. The Candidate will possess specific experience of enterprise systems, component validation and ... more >
London, United Kingdom | Deloitte
Technology and Systems Consulting Event - LondonWith the right balance, you'll achieve great things. Join our Consulting practice and have the opportunity to balance your technical and business consulting skills to bring out the best ... more >
London, United Kingdom | National Policing Improvement Agency
The NPIA, National Policing Improvement Agency, works for the police service and directly supports forces to deliver improvements today, and into the future. We're a single national support agency led by the police, for the ... more >
London, United Kingdom | Royal Borough of Kensington and Chelsea
Web Content Manager - c.£40,000 plus bonus - London   As one of the country's best-performing councils, we're always looking for new ways to improve on excellence. Providing an innovative, high-quality internet site for our ... more >
More job opportunities