sentryme.com (Betabot http botnet hosted by ecatel.net)

Resolved sentryme.com to 94.102.51.123

Server:  Sentryme.com
Gate file:  /order.php

Altnerate domain:
stayattentive.com

Bitcoin mining info:
-a sha256 -o stratum+tcp://162.243.6.88:3333 -u Ghettoweed.R -p x -g no -t 4
-a sha256 -o stratum+tcp://162.243.6.88:3333 -u Ghettoweed.R -p x -t 0 -I 10

The username string in the binary is the sky daddy_v1$, which corresponds to this Hackforums account.

Hosting infos: http://whois.domaintools.com/94.102.51.123

Related md5s (Search on Malwr.com to download samples)
Betabot: c6ca1470501c1d885717104ca9ac51e2

Categories: Uncategorized

2 Comments

Anonymous - September 20, 2013 at 6:23 pm

Is this latest version of betabot? ( 1.5 )

Anonymous - October 6, 2013 at 7:39 pm

ahahahahah CANT BELIEVE THE CODER PUT USERNAMES IN THE BIN, NICE!

Comments are closed