Over 9 million PCs infected - ZeroAccess botnet uncovered

From Botnets.fr
Jump to navigation Jump to search

(Publication) Google search: [1]

Over 9 million PCs infected - ZeroAccess botnet uncovered
Botnet ZeroAccess
Malware
Botnet/malware group
Exploit kits
Services
Feature
Distribution vector
Target
Origin
Campaign
Operation/Working group
Vulnerability
CCProtocol
Date 2012 / 19 septembre 2012
Editor/Conference Sophos Labs
Link http://nakedsecurity.sophos.com/2012/09/19/zeroaccess-botnet-uncovered/ (Archive copy)
Author James Wyke
Type

Abstract

ZeroAccess is a hugely widespread malware threat that has plagued individuals and enterprises for years. It has evolved over time to cater for new architectures and new versions of Windows.

Here at SophosLabs we have looked at previous incarnations of the ZeroAccess rootkit in depth, describing how it enslaves victim PCs, adding them to a peer-to-peer botnet which can receive commands to download further malware.

Bibtex

 @misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2012BFR1167,
   editor = {Sophos Labs},
   author = {James Wyke},
   title = {Over 9 million PCs infected - ZeroAccess botnet uncovered},
   date = {Error: Invalid time.},
   month = Error: Invalid time.,
   year = {2012},
   howpublished = {\url{http://nakedsecurity.sophos.com/2012/09/19/zeroaccess-botnet-uncovered/}},
 }