A Koobface server takedown operation which began over the weekend has already shed new light into the operations of the infamous botnet.
UK ISP Coreix unplugged command and control servers linked to the worm on Friday as part of a wider takedown operation spearheaded by Canadian security firm SecDev. Nart Villeneuve, head of the SecDev team, has informed other ISPs about compromised FTP accounts as well as notifying Google and Facebook about accounts abused by Koobface as part of a wide-ranging effort to curtail malicious activity associated with the infamous botnet.
Full Story @ The Register
Article on Yahoo!