# Nitol botnet **en.wikipedia.org/wiki/Nitol_botnet** Contributors to Wikimedia projects Jump to navigation Jump to search [The Nitol botnet mostly involved in spreading malware and](https://en.wikipedia.org/wiki/Malware) distributed denial-of-service attacks. ## History [The Nitol Botnet was first discovered around December 2012, with analysis of the botnet](https://en.wikipedia.org/wiki/Botnet) indicating that the botnet is mostly prevalent in China where an estimate 85% of the infections are detected. In China the botnet was found to be present on systems that came brand-new from the factory, indicating the trojan was installed somewhere during the [assembly and manufacturing process. According to Microsoft the systems at risk also](https://en.wikipedia.org/wiki/Microsoft) [contained a counterfeit installation of Microsoft Windows.](https://en.wikipedia.org/wiki/Microsoft_Windows) On 10 September 2012 Microsoft took action against the Nitol Botnet by obtaining a court [order and subsequently Sinkholing the 3322.org domain.[1]](https://en.wikipedia.org/wiki/Denial-of-service_attack#Blackholing_and_sinkholing) The 3322.org domain is a [Dynamic DNS which was used by the botnet creators as a command and control](https://en.wikipedia.org/wiki/Dynamic_DNS) infrastructure for controlling their botnet. Microsoft later settled with 3322.org operator Pen Yong, which allowed the latter to continue operating the domain on the condition that any subdomains linked to malware remain sinkholed.[2] ## See also [Internet crime](https://en.wikipedia.org/wiki/Internet_crime) [Internet security](https://en.wikipedia.org/wiki/Internet_security) ## References 1. ^ _Leyden, John (13 September 2012). "Microsoft seizes Chinese dot-org to kill Nitol bot_ _army"._ _[The Register. Retrieved 27 December 2012.](https://en.wikipedia.org/wiki/The_Register)_ 2. ^ _Leyden, John (4 October 2012). "Chinese Nitol botnet host back up after Microsoft_ _settles lawsuit"._ _[The Register. Retrieved 27 December 2012.](https://en.wikipedia.org/wiki/The_Register)_ ## External links [Analysis of the Nitol Botnet, created by](https://web.archive.org/web/20130113130129/http://blogs.technet.com/cfs-filesystemfile.ashx/__key/communityserver-blogs-components-weblogfiles/00-00-00-80-54/3755.Microsoft-Study-into-b70.pdf) [Microsoft as part of Operation b70](https://en.wikipedia.org/wiki/Microsoft) **[Botnets](https://en.wikipedia.org/wiki/Botnet)** ----- **Notable botnets** **Main articles** [Akbot](https://en.wikipedia.org/wiki/Akbot) [Asprox](https://en.wikipedia.org/wiki/Asprox_botnet) [Bagle](https://en.wikipedia.org/wiki/Bagle_(computer_worm)) [BASHLITE](https://en.wikipedia.org/wiki/BASHLITE) [Bredolab](https://en.wikipedia.org/wiki/Bredolab_botnet) [Cutwail](https://en.wikipedia.org/wiki/Cutwail_botnet) [Conficker](https://en.wikipedia.org/wiki/Conficker) [Donbot](https://en.wikipedia.org/wiki/Donbot_botnet) [Festi](https://en.wikipedia.org/wiki/Festi_botnet) [Grum](https://en.wikipedia.org/wiki/Grum_botnet) [Gumblar](https://en.wikipedia.org/wiki/Gumblar) [Kelihos](https://en.wikipedia.org/wiki/Kelihos_botnet) [Koobface](https://en.wikipedia.org/wiki/Koobface) [Kraken](https://en.wikipedia.org/wiki/Kraken_botnet) [Lethic](https://en.wikipedia.org/wiki/Lethic_botnet) [Mariposa](https://en.wikipedia.org/wiki/Mariposa_botnet) [Mega-D](https://en.wikipedia.org/wiki/Mega-D_botnet) [Mirai](https://en.wikipedia.org/wiki/Mirai_(malware)) [Metulji](https://en.wikipedia.org/wiki/Metulji_botnet) Nitol [Rustock](https://en.wikipedia.org/wiki/Rustock_botnet) [Sality](https://en.wikipedia.org/wiki/Sality) [Slenfbot](https://en.wikipedia.org/wiki/Slenfbot) [Srizbi](https://en.wikipedia.org/wiki/Srizbi_botnet) [Storm](https://en.wikipedia.org/wiki/Storm_botnet) [TDL-4](https://en.wikipedia.org/wiki/TDL-4) [Torpig](https://en.wikipedia.org/wiki/Torpig) [Virut](https://en.wikipedia.org/wiki/Virut) [Vulcanbot](https://en.wikipedia.org/wiki/Vulcanbot) [Waledac](https://en.wikipedia.org/wiki/Waledac_botnet) [ZeroAccess](https://en.wikipedia.org/wiki/ZeroAccess_botnet) [Zeus](https://en.wikipedia.org/wiki/Zeus_(malware)) [Browser security](https://en.wikipedia.org/wiki/Browser_security) [Computer virus](https://en.wikipedia.org/wiki/Computer_virus) [Computer worm](https://en.wikipedia.org/wiki/Computer_worm) [Malbot](https://en.wikipedia.org/wiki/Internet_bot#Malicious_purposes) [Internet security](https://en.wikipedia.org/wiki/Internet_security) [Malware](https://en.wikipedia.org/wiki/Malware) [Man-in-the-browser](https://en.wikipedia.org/wiki/Man-in-the-browser) [Network security](https://en.wikipedia.org/wiki/Network_security) [Operation: Bot Roast](https://en.wikipedia.org/wiki/Operation:_Bot_Roast) [Trojan horse](https://en.wikipedia.org/wiki/Trojan_horse_(computing)) This [malware-related article is a stub. You can help Wikipedia by expanding it.](https://en.wikipedia.org/wiki/Malware) ----- [Retrieved from https://en.wikipedia.org/w/index.php?title=Nitol_botnet&oldid=1062846691](https://en.wikipedia.org/w/index.php?title=Nitol_botnet&oldid=1062846691) -----