Microsoft passes Rustock evidence to FBI

Civil case win a death knell for spammers.

Microsoft has prevailed in its civil case against the operators of the Rustock botnet, and gave its evidence to the FBI in the hopes it will pursue a criminal case.

A US district court ruled the tens of thousands of domain names and IP addresses used to host the prolific botnet were to be disabled for a period of two years.

The move follows a Microsoft-led takedown operation in March, which involved cutting off command-and-control centres from being able to communicate with Rustock-infected machines.

A lawsuit was filed against 11 unnamed defendants.

Microsoft is working with the FBI to ensure the masterminds behind the botnet, at one time responsible for almost half of the world's spam, were “held accountable for their actions,” according to Microsoft's digital crimes unit senior attorney Richard Boscovich.

In July, Microsoft announced a $250,000 reward for information leading to the arrest and conviction of the Rustock operators.

That offer was still in effect, but Microsoft has asked that any tips be sent directly to the FBI.

As of last week, Microsoft – which offers free tools to clean Rustock infections – identified 421,000 IP addresses worldwide still infected by Rustock, a reduction of nearly 75 per cent since the March effort.

In the United States, there are still more than 36,000 Rustock-hijacked PCs.

In its heyday, the botnet was believed to control a network of more than a million computers, enabling them to send out as many as 40 billion spam emails per day, selling everything from software to discounted drugs, like Viagra and Cialis, although many of the products were believed to be counterfeit.

This article originally appeared at scmagazineus.com

Copyright © SC Magazine, US edition
Microsoft passes Rustock evidence to FBI
Company/Organisation
Technology

What are your thoughts on this article? Add your comment below.

To begin commenting right away, you can log in below or register an account if you don't yet have one. Please read our guidelines on commenting. Offending posts will be removed and your access may be suspended. Abusive or obscene language will not be tolerated. The comments below do not necessarily reflect the views or opinions of SC Magazine, Haymarket Media or its employees.

NOTE: You must be a registered member of SC Magazine to post a comment.

Click here to login | Click here to register
comments powered by Disqus
Sign up to receive SC Magazine email newsletters
   FOLLOW US...
Most Read