Difference between revisions of "Bamital"

From Botnets.fr
Jump to navigation Jump to search
m (1 revision imported)
m (Text replacement - "=Unknown" to "=")
 
Line 5: Line 5:
* One server at ISPrime data center in Weehawken, New Jersey
* One server at ISPrime data center in Weehawken, New Jersey
* One server at LeaseWeb in the Netherlands
* One server at LeaseWeb in the Netherlands
|UserAgent=Unknown
|UserAgent=
|CCProtocol=Unknown
|CCProtocol=
|Target=Unknown
|Target=
|Status=Unknown
|Status=
|BeginYear=2010
|BeginYear=2010
|EndYear=Unknown
|EndYear=
|Group=Click frauding
|Group=Click frauding
|Vector=Phoenix
|Vector=Phoenix
|Victime4=
|Victime4=
}}
}}

Latest revision as of 15:49, 8 August 2015

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Bamital
Alias
Group Click frauding
Parent
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of:
Campaigns:

Target
Origin
Distribution vector Phoenix
UserAgent
CCProtocol
Activity 2010 /
Status
Language
Programming language
Operation/Working group Operation b58

Introduction

  • Distribution through P2P filesharing networks and exploit kits where traffic was redirected thanks to SEO

Features

Associated images

Checksums / AV databases

Publications

 AuthorEditorYear
Massive search fraud botnet seized by Microsoft and SymantecSean GallagherCondé Nast2013
Microsoft and Symantec take down Bamital botnet that hijacks online searchesRichard BoscovichMicrosoft2013
SIRv12Joe Faulhaber
David Felstead
Paul Henry
Jeff Jones
Jimmy Kuo
Marc Lauricella
Dave Probert
Tim Rains
Frank Simorjay
Holly Stewart
Matt Thomlinson
Scott Wu
Terry Zink
Dennis Batchelder
Shah Bawany
Joe Blackbird
Eve Blakemore
Sarmad Fayyaz
Nitin Kumar Goel
Ken Malcolmson
Nam Ng
Mark Oram
Daryl Pecelj
Microsoft2012