Microsoft applies 'surgical sinkhole' to strangle botnet installed on new PCs

14.09.2012

All DNS traffic between users and the 3322.org domain and its subdomains now flows through Nominum servers installed at Microsoft's data centers, confirmed Sprosts.

"Microsoft has told us that this is literally the biggest botnet it's dealt with," said Blasingame, talking about the amount of sinkholed traffic Microsoft is now dealing with. "They've said it's a massive amount of DNS traffic."

Microsoft's take on 3322.org is unclear. In a complaint filed on Sept. 10 with a Virginia federal court, Microsoft called the domain a "major hub of illegal Internet activity, used by criminals every minute of every day to pump malware and instructions to the computers of innocent people world-wide."

Boscovich, however, seemed willing to give its owner, Peng Yong, the benefit of the doubt. "We're reached out to the domain owner, not only to serve him [with the complaint] but also to work with him."

In an interview with the Wednesday, Peng denied the allegations and said his company does not tolerate improper conduct on 3322.org.