Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

January 19th, 2013, 10:57 GMT · By

BLOG

Polish Registrar Shuts Down Multiple Domains Used by Virut Botnet

SHARE:

Adjust text size:


NASK takes down domains used by Virut botnet Enlarge picture - NASK takes down domains used by Virut botnet
Security researcher Brian Krebs reveals that NASK, the Polish domain registrar in charge of .pl top-level domains, has shut down a number of domains used by the notorious Virut botnet.

According to Poland’s Computer Emergency Response Team, CERT Polska, the domain names have been used to spread and control the Virut malware.

“A number of domains in .pl, most notably zief.pl and ircgalaxy.pl, have been used to host Virut, its command & control IRC servers, as well as to host other malware including Palevo and Zeus,” CERT Polska explained.

“NASK, the operator of the Polish domain registry, took over 23 of these domains yesterday (Jan 17, 2013) in an effort to protect Internet users from Virut-related threats. Name servers for those domains were changed to sinkhole.cert.pl, controlled by CERT Polska – an incident response team operated by NASK.”

Earlier this week, Symantec reported that cybercriminals were using the Virut malware to download W32.Waledac.D, the malicious element that powered the Waledac (Kelihos) botnet. Experts found that each of the zombie machines infected with the Waledac malware was capable of sending out 2,000 spam emails per hour.

Symantec’s calculations reveal that around 3.6 billion spam emails can be sent out by Waldac in just one day.
FILED UNDER:
Poland
Virut
CERT
malware
botnet

TELL US WHAT YOU THINK:

1,510 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Massive Android Botnet Affects over 1 Million Chinese Users

Real-Time Map from Trend Micro Shows Global Botnet Activity

Waledac Malware Could Send 3.6 Billion Spam Emails per Day from Infected PCs

Izz ad-Din al-Qassam Cyber Fighters Initiate Week 6 of Operation Ababil 2

Iran Denies Being Involved in Cyberattacks Against US Banks

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM