| Kraken botnet evolving, says PC Tools |
|
|
| by Stephen Withers | |
| Tuesday, 29 April 2008 | |
|
Page 1 of 2 "PC Tools are [sic] revealing the details of the latest Kraken variant including the new list of domain names as well as the mathematical algorithm used," said Sergei Shevchenko, senior malware researcher at PC Tools. "The source code of the Kraken domain name generation algorithm is disclosed in the interests of congregating all the knowledge about this bot so that other security specialists can benefit from it," he added. According to PC Tools officials, the new Kraken variant uses a random word generator that can produce natural-looking though meaningless words for use in headers and URLs. "The random word generator is possibly designed to evade spam filters and algorithms that have the ability to distinguish the 'randomness' of words by locating uncommon combinations of characters. If a rule or algorithm cannot be built to distinguish such a word then it cannot be detected or blocked," said Shevchenko. CONTINUED |
| < Next story in category | Previous story in the category > |
|---|

TAG 







