Microsoft Settles Computer-Fraud Case Related to Website Operated by Chinese Business

By Ed Silverstein October 02, 2012

Microsoft has settled a computer-fraud case involving a website operated by a Chinese business – and will drop a pending lawsuit.

The Associated Press reports that Peng Yong, the registered owner of 3322.org, will collaborate with Microsoft and China's computer emergency response team to stop cyber-criminals from using the domain.

The company will also block malware connected to its domain.


Image via Shutterstock

The 3322.org owner will direct subdomains listed in a "block-list" to a sinkhole computer managed by CN-CERT. He also will also identify owners of infected computers in China and help users to remove malware.

It was also reported that 3322.org was used for the Nitol botnet and more than 500 other types of malware, Microsoft claims in court documents. At first, Peng denied allegations made in Microsoft’s lawsuit.

Also, 3322.org has been linked to malicious computer activity since 2008. Microsoft said it located malware on new computers its employees purchased in various cities in China. Microsoft was later allowed to disrupt the botnet. Microsoft used a sinkhole to trick computers into communicating with researcher-controlled servers.

In response, Richard Domingues Boscovich, an attorney in Microsoft's digital crimes unit, said the settlement will make sure the malicious subdomains associated with 3322.org will "never again be used for cybercrime."

"We believe the action against the Nitol botnet was particularly effective because it disrupted more than 500 different strains of malware -- potentially impacting several cybercriminal operations," he said.

"While there have been some reports that the malware in this case was being installed on computers at the factory, we have no evidence to support this claim,” he added in a statement. “Our study showed that the malware was more likely than not being pre-installed on computers after they had left the factory but before they were delivered to the consumer.”

"Cybercriminals did and continue to do this by having disreputable distributors or resellers load malware-infected counterfeit software onto computers that have shipped from the PC manufacturer without an operating system, or in some cases, with an operating system that a customer doesn't want. Those infected computers are then loaded with a desired operating system that is often laden with malware and then sold to unassuming customers," Boscovich added in the statement.




Edited by Brooke Neuman

TechZone360 Contributor

SHARE THIS ARTICLE
Related Articles

Severed Internet Cables Causing Massive Outages in Bay Area

By: Joe Rizzo    7/2/2015

At 4:20 am. on Tuesday morning, three fiber optic cables providing Internet access to Sacramento were physically cut leaving California's capital with…

Read More

The Future Form of Communication is Telepathy, According to Zuckerberg

By: Joe Rizzo    7/2/2015

"One day, I believe we'll be able to send full rich thoughts to each other directly using technology. You'll just be able to think of something and yo…

Read More

1Gbps Broadband Boosts Economy, Home Prices

By: Tara Seals    7/2/2015

1Gbps services to the home-the new frontier of competition for triple-play providers-turn out to have a measurable economic benefit. A study from the …

Read More

Windy City Takes on Cloud: New Tax on Streaming Media, SaaS and PaaS

By: Laura Stotler    7/1/2015

In a bold and controversial move, the city of Chicago instituted a new cloud tax today that will target online databases as well as popular streaming …

Read More

Practical Step-by-Step Guidance After Your Company Has Been Hacked

By: TMCnet Special Guest    6/30/2015

Everybody tends to think that hackers will never ever target them or their company/organization-until a breach occurs. We have already published sever…

Read More