Zeus botnet ‘nuked’ 100,000 Windows PCs
By Asavin Wattanajantra,
Criminal controllers of a Zeus botnet server flicked a ‘nuclear’ switch that ‘destroyed’ the operating system of 100,000 affected computers, a researcher has claimed.
According to the Washington Post and his own security blog, Swiss IT expert Roman Hüssy witnessed the Zeus Command & Control (C&C) server send out KOS (Kill Operating System) commands which would incapacitate and prevent the OS from loading.
The C&C botnet server hosted five different Zeus installations that controlled more than 100,000 computers that were located mainly in Poland and Spain.
Security expert Jozsef Gegeny said on the S21sec blog that banking trojans such as Zeus usually had this functionality, and and when Zeus’ nuclear method was tested it resulted in the "blue screen of death".
He questioned why an attacker would want to take a victim’s computer offline, and suggested that it was because a phishers might want to earn more time.
He said: “Taking the victim away from internet connection – before the unwanted money transfer is realised and further actions could be taken.”
Bruce Schneier, chief security technology officer for BT, said on his blog that he believed it could be sign that "botnet wars" were heating up.
He said: “Botnet designers would rather destroy their networks than have them fall into 'enemy' hands.”
You may also like...
Sponsored Links
advertisement
You may also like...
Latest Security Analysis & Insight
Who to trust after the VeriSign hack?
Davey Winder questions what data was stolen from VeriSign and wonders why the company hasn't been more forthcoming.
- Striving to solve the security skills crisis
- Would you employ a hacker or malware writer?
- Q&A: Raj Samani, CTO McAfee
- Erase and rewind: the EU and privacy
- My email address is [CENSORED]
- Is there such a thing as a secure tablet?
- 2011: The year in news
- BYOD: Old or new, good or bad?
- Are the cookie laws crumbling already?
Latest Security Reviews
Check Point 2210 Appliance review
Rating: ![]()
advertisement
Most popular
- Will someone rid me of these troublesome Macs?
- Symantec hackers: We've released pcAnywhere source code
- BT considering Ofcom price cap appeal
- Google sends in Bouncer to sort out malicious apps
- ACTA: the basics, the controversies, and the future
- Trendnet firmware flaw exposes private videos
- Anonymous publishes FBI hacking call
- Head to Head: Mac OS X 10.7 Lion vs Windows 7
- VeriSign admits 2010 hack
- Nokia Lumia 710 review
Latest News Videos in Security
IT PRO Podcast: Are UK data protection laws flawed?
We bring in two experts to talk about the problems with UK data protection law and the way it is managed.
Register for IT PRO
You'll get exclusive member benefits including free whitepapers, downloads, Webinars and weekly newsletters full of the latest IT PRO news, reviews, insight and expertise.





