Microsoft Names Alleged Kelihos Botnet Operator

  /     /     /  
Publicated : 22/11/2024   Category : security


Microsoft Names Alleged Kelihos Botnet Operator


Suspect worked for antivirus and software development firms in Russia.



Microsoft is continuing its legal tear against botnets: It has now named the alleged botnet operator of the Kelihos botnet that it helped take down last fall.
The alleged perpetrator, Andrey N. Sabelnikov, a Russian engineer, has been added to
Microsofts legal suit filed in U.S. District Court in September
in relation to the botnet. The company, which worked with Kaspersky Lab and Kyrus
to take down the spamming botnet
, says the initial claims named co-defendants in Microsofts civil lawsuit, Dominique Alexander Piatti and dotFREE Group SRO, cooperated and provided information that led to the latest legal action against Sabelnikov as part of a settlement in October.
In todays complaint, Microsoft presented evidence to the court that Mr. Sabelnikov wrote the code for and either created, or participated in creating, the Kelihos malware. Further, the complaint alleges that he used the malware to control, operate, maintain, and grow the Kelihos botnet. These allegations are based on evidence Microsoft investigators uncovered while analyzing the Kelihos malware, said Richard Domingues Boscovich, senior attorney for Microsofts digital crimes unit. Microsoft also alleges that Mr. Sabelnikov registered more than 3,700 cz.cc subdomains from Mr. Piatti and dotFREE Group SRO, and misused those subdomains to operate and control the Kelihos botnet.
Microsoft says Sabelnikov lives in St. Petersburg, Russia, and is a contractor for a software development and consulting firm who once worked as a software engineer and project manager at a firewall and antivirus firm.
According to KrebsOnSecurity
, that firm was Agnitum.
Read the rest of this article on
Dark Reading
.
The right forensic tools in the right hands are just a start. The new
Digital Detectives
issue of Dark Reading shows you how to better apply the lessons they teach. (Free registration required.)

Last News

▸ ArcSight prepares for future at user conference post HP acquisition. ◂
Discovered: 07/01/2025
Category: security

▸ Samsung Epic 4G: First To Use Media Hub ◂
Discovered: 07/01/2025
Category: security

▸ Many third-party software fails security tests ◂
Discovered: 07/01/2025
Category: security


Cyber Security Categories
Google Dorks Database
Exploits Vulnerability
Exploit Shellcodes

CVE List
Tools/Apps
News/Aarticles

Phishing Database
Deepfake Detection
Trends/Statistics & Live Infos



Tags:
Microsoft Names Alleged Kelihos Botnet Operator