Under 48 timmar som man omdirigerade trafiken från 1500 domäner i botnätet till egna servrar (sinkholing) så identifierades 2 miljoner drabbade unika IP adresser i 223 länder.
En (1!) misstänkt person i Vitryssland har arresterats. Var finns resten?
"Jointly, the international partners took action against servers and domains, which were used to spread the Andromeda malware. Overall, 1500 domains of the malicious software were subject to sinkholing. According to Microsoft, during 48 hours of sinkholing, approximately 2 million unique Andromeda victim IP addresses from 223 countries were captured. The involved law enforcement authorities also executed the search and arrest of a suspect in Belarus."