PDA

View Full Version : Feds To Remotely Uninstall Bot From Some PCs



wraggster
April 27th, 2011, 23:24
Federal authorities will remotely uninstall the Coreflood botnet Trojan from some infected Windows PCs (http://www.computerworld.com/s/article/9216199/Feds_to_remotely_uninstall_Coreflood_bot_from_some _PCs) over the next four weeks. Coreflood will be removed from infected computers only when the owners have been identified by the DOJ and they have submitted an authorization form to the FBI. The DOJ's plan to uninstall Coreflood is the latest step in a coordinated campaign to cripple the botnet (http://www.computerworld.com/s/article/9215801/DOJ_gets_court_permission_to_attack_botnet), which controls more than 2 million compromised computers. The remote wipe move will require consent, and the action does does come with warnings from the court that provided the injunction against the botnet, however. 'While the 'uninstall' command has been tested by the FBI and appears to work, it is nevertheless possible that the execution of the 'uninstall' command may produce unanticipated consequences, including damage to the infected computers,' the authorization form reads. FBI Special Agent Briana Neumiller said, 'The process does not affect any user files on an infected computer, nor does it ... access any data on the infected computer.' The DOJ and FBI did not say how many machines it has identified as candidates for its uninstall strategy, but told the judge that FBI field offices would be notifying affected people, companies and organizationshttp://it.slashdot.org/story/11/04/27/217221/Feds-To-Remotely-Uninstall-Bot-From-Some-PCs