02.26.10

Gemini version available ♊︎

Company That Made Botnets Pretends to Fight Botnets (Microsoft)

Posted in Google, Microsoft, Security, Windows at 1:59 pm by Dr. Roy Schestowitz

Photogram

Summary: King of the bots wants special credit, admiration and media worship for its futile struggles to eradicate the problem it created (one botnet at a time)

THOSE who have Silver Lie installed (i.e. users of proprietary operating systems) will be able to watch the latest shameless spin from Microsoft. 1 trillion (that’s 1,000,000,000,000) spam messages per week are said to be spewed from Windows botnets, but Microsoft claims that “hundreds of thousands of computers” running Windows are being addressed (there are hundreds of millions of zombie PCs running Windows) to eliminate just “1.5 billion spam emails per day”. So how much is that? Like 1% of all spam? Nessuno quotes the following portion from Microsoft’s latest propaganda:

Waledac is estimated to have infected hundreds of thousands of computers around the world and, prior to this action, was believed to have the capacity to send over 1.5 billion spam emails per day. In a recent analysis, Microsoft found that between December 3-21, 2009, approximately 651 million spam emails attributable to Waledac were directed to Hotmail accounts alone, including offers and scams related to online pharmacies, imitation goods, jobs, penny stocks and more.

“The part I’m quoting,” writes Nessuno, “lies underneath the Silverlight advertisement. You can read it here without having to download Silverlight.”

Microsoft’s claims are almost hilarious; they try to be seen as though they are doing something. But it’s a losing battle which was lost because Microsoft was not interested in making its platform secure. Here is the MSBBC describing Microsoft as the good guy (using the above PR/propaganda) while neglecting to say that those are compromised Windows PCs that Microsoft’s own negligence is breeding [1, 2, 3].

Microsoft has won court approval to shut down a global network of computers which it says is responsible for more than 1.5bn spam messages every day.

A US judge granted the firm’s request to shut down 277 internet domains, which it said were used to “command and control” the so-called Waledac botnet.

There is some more coverage like this in the British press [1, 2, 3] [via], so the MSBBC is not alone here (there are Microsoft boosters too). The press across the Atlantic still writes about the huge damages caused by those Windows botnets (estimated perhaps at over a trillion dollars) and the remote possibility of creating new laws — as though laws will address the lawless and stop botnets — is still floating.

“The press across the Atlantic still writes about the huge damages caused by those Windows botnets (estimated perhaps at over a trillion dollars) and the remote possibility of creating new laws — as though laws will address the lawless and stop botnets — is still floating.”Intel finally says that it has come under Web attacks, possibly just like the Internet Explorer attacks on Google [1, 2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12]. It happened on the same month, but Intel kept quiet about it (many firms do because this is negative publicity).

Speaking of Intel, the Wintel press enthusiastically played along with Microsoft's pitch earlier this week when it wrongly claimed that Firefox had a zero-day flaw. Mozilla is formally denying such a claim.

Verisign is working hard to maintain DNS in the face of spoofing, but it also has Windows botnets knocking DNS servers off service sometimes [1, 2], which is equally annoying. We are hearing from readers whose DNS servers are frequently unavailable.

Verisign tries to secure DNS

[...]

At the core of DNSSEC is the ability to verify the answers given by DNS servers. This should, in theory, make it harder for spoofing and poisoning attacks. The digital signing of answers mean that like SSL certificates for websites, it can be checked to see whether the DNS query has produced the legitimate answer.

For those who are not in the mood for bad news, here is some new virus humour.

Share in other sites/networks: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • Reddit
  • email

Decor ᶃ Gemini Space

Below is a Web proxy. We recommend getting a Gemini client/browser.

Black/white/grey bullet button This post is also available in Gemini over at this address (requires a Gemini client/browser to open).

Decor ✐ Cross-references

Black/white/grey bullet button Pages that cross-reference this one, if any exist, are listed below or will be listed below over time.

Decor ▢ Respond and Discuss

Black/white/grey bullet button If you liked this post, consider subscribing to the RSS feed or join us now at the IRC channels.

4 Comments

  1. your_friend said,

    February 27, 2010 at 8:35 pm

    Gravatar

    Security researchers watching this botnet say there has been no real change in Waledac, so the free speech challenging court order has been useless. Researchers at SecureWorks note that Waledac is not usually a spammer in the first place and discount claims of reduced activity.

    Free speech advocates should be alarmed about this apparent grant of censorship that Microsoft has been given. To take down any site that has user feedback, all an attacker has to do is program botnets to spam the site and run to a federal judge for the order. This is a double insult to people who run IRC channels, forums and other community services, much like RIAA posting of their own material to file sharing networks.

    Roy Schestowitz Reply:

    USENET is already being criminalised.

  2. BrownieBoy said,

    March 2, 2010 at 4:52 am

    Gravatar

    Roy,

    I complained to the BBC about their failure to mention to mention Windows in the article that you quoted above.

    Today, I received their reply:

    “Thank you for your e-mail to the BBC News website.

    We did not state that the infected PCs were all Window’s machines, as we
    were unable to confirm that fact with Microsoft. In most cases, it is
    safe to assume that Windows machines make up the majority of a botnet.
    However, non Windows machines have been known to be used particularly in
    the command and control systems of botnets and therefore we could not
    categorically state that every machine ran Windows. ”

    Gotta love it! They wouldn’t say they were Windows because Microsoft hadn’t told them if they *could* say that!

    And what does “non Windows machines have been known to be used particularly in the command and control systems of botnets” supposed to mean? That the bad guy who controls the botnet might be using some Linux machines to pull the botnet’s strings? That hardly makes them part of the botnet, IMHO.

    Roy Schestowitz Reply:

    They often do. PayPal says so anyway, but it doesn’t make GNU/Linux the problem. It just means that people who know their way around computers choose a better platform.

DecorWhat Else is New


  1. Links 23/03/2023: Linux 6.2.8 and XWayland 23.1.0

    Links for the day



  2. IRC Proceedings: Wednesday, March 22, 2023

    IRC logs for Wednesday, March 22, 2023



  3. Apple 'Porn' Filter

    Guest post by Ryan Farmer: Apple and US State Governments Developing System to Require People to Report Themselves for Watching Porn.



  4. 3.5 Years Later Gemini Protocol and Geminispace Are Still 100% Community-Controlled

    Community-centric alternatives to the World Wide Web have gained traction; one of them, Gemini Protocol, continues to grow in 2023 and we're pleased to report progress and expansion



  5. Windows Falls to 16% Market Share in India (It was 97% in 2009), Microsoft Layoffs Reach India Too

    This month’s picture from the world’s most populous nation does not look good for Microsoft (it looks good for GNU/Linux); anonymous rumour mills online say that Microsoft isn’t moving to India but is actually firing staff based in India, so it’s a case of shrinking, not offshoring. When even low-paid (much lower salaries) staff is discarded it means things are very gloomy.



  6. Links 22/03/2023: GNOME 44 “Kuala Lumpur”

    Links for the day



  7. Microsoft Has Also Infiltrated the OSI's Board of Directors After Rigged Elections

    Weeks ago we warned that this would happen and for the third or fourth time in 2 years the OSI’s election process broke down; today the Open Source Initiative (OSI) writes: “The polls just closed, the results are in. Congratulations to the returning directors Aeva Black…” (Microsoft employee)



  8. Links 22/03/2023: Official Thunderbird Podcast Starts

    Links for the day



  9. IRC Proceedings: Tuesday, March 21, 2023

    IRC logs for Tuesday, March 21, 2023



  10. Many More Microsoft Layoffs Later Today

    Yesterday we shared rumours about Microsoft layoffs being planned for later today (there were 3 waves of layoffs so far this year). There are several more people here who say the same. How much noise will Microsoft make in the “media” in order to distract? Will the chaffbot "ChatGPT" help create enough chaff?



  11. Links 21/03/2023: JDK 20 and GNOME 43.5

    Links for the day



  12. Germany's Lobbyists-Infested Government Sponsors the War on Ukraine via the European Patent Office (EPO)

    The chief UPC ‘judge’ is basically seeking to break the law (and violate constitutions, conventions etc.) to start a kangaroo court while dodging real courts, just like Vladimir Putin does



  13. [Meme] The Meme That Team UPC (the Collusion to Break the European Laws, for Profit) Threats to Sue Us For

    António Campinos and Team UPC are intimidating people who simply point out that the Unified Patent Court (UPC) is illegal and Klaus Grabinksi, shown above, strives to head a de facto kangaroo court in violation of constitutions and conventions (the UK does not and cannot ratify; Ireland hasn’t even held a referendum on the matter)



  14. Microsoft is Sacking People Every Month This Year, Even Managers (While Sponsored Media Produces Endless Chatbot Chaff)

    Lots of Microsoft layoffs lately and so-called ‘journalists’ aren’t reporting these; they’re too busy running sponsored puff pieces for Microsoft, usually fluff along the “hey hi” (AI) theme



  15. 3 Months Late Sirius 'Open Source' Finally Deletes Us From the Fraudulent 'Meet the Team' Page (But Still Lists Many People Who Left Years Ago!)

    Amid fraud investigations the management of Sirius ‘Open Source’ finally removed our names from its “Meet the Team” page (months late); but it left in the page about half a dozen people who left the company years ago, so it’s just lying to its clients about the current situation



  16. Amid Fraud at Sirius 'Open Source' CEO Deletes His Recent (This Month) Past With the Company

    Not only did the Sirius ‘Open Source’ CEO purge all mentions of Sirius from his Microsoft LinkedIn account; he’s racing against the clock as crimes quickly become a legal liability



  17. Web Survey Shows Microsoft Falling Below 15% Market Share in Africa, Only One Minuscule African Nation Has Windows Majority

    A Web survey that measured Microsoft Windows at 97% in Africa (back in 2010) says that Windows has become rather small and insignificant; the Microsoft-sponsored mainstream media seems to be ignoring this completely, quite likely by intention...



  18. Rumours of More Microsoft Layoffs Tomorrow (Including Managers!), Probably Azure Again (Many Azure Layoffs Every Year Since 2020)

    Amazon is laying off AWS staff and Microsoft has been laying off Azure staff for 3 years already, including this year, so it seems like the “clown computing” bubble is finally bursting



  19. [Meme] EPO's Management Brainstorm

    The story behind a misleading slogan told above



  20. The Photo Ops Festival of the Funky President António Campinos and Revolt From the Patent Examiners Whom He Perpetually Oppresses

    European Patents are being granted for no reason other than application and renewal fees, awarding European monopolies to companies that aren't even European (only about a third are actually European); staff of the EPO is fed up as it regards or views all this as an extreme departure from the EPO's mission (and it's also outright illegal)



  21. Links 21/03/2023: Trisquel GNU/Linux 11.0 LTS

    Links for the day



  22. Back Doors Proponent Microsoft Infiltrates Panels That Write the Security Regulations, Press Fails to Point Out the Obvious

    Cult tactics and classic entryism serve Microsoft again, stacking the panels and basically writing policy (CISA). As an associate explained it, citing this new example, Stanford “neglects to point out the obvious fact that Microsoft is writing its own regulations.”



  23. IRC Proceedings: Monday, March 20, 2023

    IRC logs for Monday, March 20, 2023



  24. Links 20/03/2023: Curl 8.0.0/1 and CloudStack 4.18.0.0 LTS

    Links for the day



  25. Standard Life (Phoenix Group Holdings): Three Weeks to Merely Start Investigating Pension Fraud (and Only After Repeated Reminders From the Fraud's Victims)

    As the phonecall above hopefully shows (or further elucidates), Standard Life leaves customers in a Kafkaesque situation, bouncing them from one person to another person without actually progressing on a fraud investigation



  26. Standard Life Paper Mills in Edinburgh

    Standard Life is issuing official-looking financial papers for companies that then use that paperwork to embezzle staff



  27. Pension Fraud Investigation Not a High Priority in Standard Life (Phoenix Group Holdings)

    The 'Open Source' company where I worked for nearly 12 years embezzled its staff; despite knowing that employees were subjected to fraud in Standard Life's name, it doesn't seem like Standard Life has bothered to investigate (it has been a fortnight already; no progress is reported by management at Standard Life)



  28. Links 20/03/2023: Tails 5.11 and EasyOS 5.1.1

    Links for the day



  29. Links 20/03/2023: Amazon Linux 2023 and Linux Kernel 6.3 RC3

    Links for the day



  30. IRC Proceedings: Sunday, March 19, 2023

    IRC logs for Sunday, March 19, 2023


RSS 64x64RSS Feed: subscribe to the RSS feed for regular updates

Home iconSite Wiki: You can improve this site by helping the extension of the site's content

Home iconSite Home: Background about the site and some key features in the front page

Chat iconIRC Channel: Come and chat with us in real time

Recent Posts