A week ago we discussed the takedown of McColo (and the morality of that action). McColo was reportedly the source of wherever from 50% to 75% of the world's spam. On firearm the malware network briefly connected to life in order to hand over command and control channels to a Russian network. "The rogue network iap regained connectivity for about 12 hours on rod by making use of a backup arrangement it had with Swedish cyberspace service online network service isp TeliaSonera. During that time, McColo was observed pushing as much as 15MB of data per second to servers located in Russia, unmistakable to... Trend Micro. The brief resurrection allowed miscreants who rely on McColo to update a portion of the massive botnets they use to push spam and malware. Researchers from FireEye saw PCs infected by the Rustock botnet being updated so they'd report to a new server located at abilena.podolsk-mo.ru for instructions. That means the sharp drop in spam levels reported just after McColo's demise isn't likely to last."
Read more of this story at Slashdot.
More: - The rest...
Mark


















