427 Botnet fm qxd


Table 4.8 File Names Agobot Uses to Spread Malware via P2P Set A



Download 6,98 Mb.
Pdf ko'rish
bet99/387
Sana03.12.2022
Hajmi6,98 Mb.
#878307
1   ...   95   96   97   98   99   100   101   102   ...   387
Bog'liq
Botnets - The killer web applications

Table 4.8
File Names Agobot Uses to Spread Malware via P2P
Set A
Set B (%s = )
%s - ADSL Playfix
Alessandra Ambrosia
%s - Autotuning (for Newbies)
Amanda Peet
%s - Cable Modem Playfix
Anna Kournikova
%s - CD Key Generator
Ashley Judd
%s - Character Cheat
Belinda Chapple
%s - Crack all versions
Britney Spears
www.syngress.com
116
Chapter 4 • Common Botnets
Continued
427_Bot_ch04.qxt 1/9/07 3:03 PM Page 116


Table 4.8 continued
File Names Agobot Uses to Spread Malware via P2P
Set A
Set B (%s = )
%s - Game Trainer
Cameron Diaz
%s - Idem Duplicator
Carmen Electra
%s - Internet Play Fix
Chandra North
%s - Item Hack
Charlize Theron
%s - Map Hack
Christina Aguilera
%s - Multiplayer Cheat
Donna D’Erico
%s - Newest Patch
Emma Sjoberg
%s - NOCD Patch
Gillian Anderson
%s - Tweaking utility
Halle Berry
%s - Unlimited Healt Trainer
Helena Christensen
%s - Unlock Everything Trainer
Jessica Alba
%s 3D Setup
Jolene Blalock
%s newest version crack
Karina Lombard
Kate Moss
Katie Price
Kelly Hu
Kirsten Dunst
Kylie Bax
Kylie Minogue
Lexa Doig
Michelle Behennah
Pamela Anderson
Salma Hayek
Samantha Mumba
Sandra Bullock
Shakira
Stacey Keibler
Source:Trend Micro Inc. (www.trendmicro.com/vinfo/virusencyclo/
default5.asp?VName=WORM%5FAGOBOT%2EGEN&VSect=T)
www.syngress.com
Common Botnets • Chapter 4
117
427_Bot_ch04.qxt 1/9/07 3:03 PM Page 117


Spybot
Spybot is an evolution of SDBot. Like SDBot, the Spybot code is open source
and available for the public to modify and contribute to, to help develop fur-
ther functionality for the product.
The main differentiator for Spybot from SDBot is that Spybot adds a
number of spyware-like capabilities such as keystroke logging, e-mail address
harvesting, Web-surfing activities, and more.
Aliases
Again, antivirus and security vendors rarely agree on naming conventions, so
the same threat can have multiple names, depending on which vendor is sup-
plying the information. Here are some aliases for Spybot from the top
antivirus vendors:

McAfee: W32/Spybot.worm.gen

Symantec: W32.Spybot.Worm

Trend Micro: Worm_Spybot.gen

Kaspersky: Worm.P2P.SpyBot.Gen

CA: Win32.Spybot.gen

Sophos: W32/Spybot-Fam
Infection
Spybot spreads through a variety of methods, including the standard attempt
to propagate by finding open network shares with weak or nonexistent secu-
rity. Spybot also spreads via some P2P networks and seeks out systems com-
promised by other worms or malware to leverage existing backdoors or open
ports to infect systems.
Spybot contains the standard bot functionality of providing a backdoor for
a botherder to command and control the infected machine, but it also adds
some unique new features, such as the ability to broadcast Spam over Instant
Messaging (SPIM). It also attempts to modify the registry to prevent various
functions such as blocking the user from installing Windows XP SP2 or dis-
abling the Windows XP Security Center.

Download 6,98 Mb.

Do'stlaringiz bilan baham:
1   ...   95   96   97   98   99   100   101   102   ...   387




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©hozir.org 2024
ma'muriyatiga murojaat qiling

kiriting | ro'yxatdan o'tish
    Bosh sahifa
юртда тантана
Боғда битган
Бугун юртда
Эшитганлар жилманглар
Эшитмадим деманглар
битган бодомлар
Yangiariq tumani
qitish marakazi
Raqamli texnologiyalar
ilishida muhokamadan
tasdiqqa tavsiya
tavsiya etilgan
iqtisodiyot kafedrasi
steiermarkischen landesregierung
asarlaringizni yuboring
o'zingizning asarlaringizni
Iltimos faqat
faqat o'zingizning
steierm rkischen
landesregierung fachabteilung
rkischen landesregierung
hamshira loyihasi
loyihasi mavsum
faolyatining oqibatlari
asosiy adabiyotlar
fakulteti ahborot
ahborot havfsizligi
havfsizligi kafedrasi
fanidan bo’yicha
fakulteti iqtisodiyot
boshqaruv fakulteti
chiqarishda boshqaruv
ishlab chiqarishda
iqtisodiyot fakultet
multiservis tarmoqlari
fanidan asosiy
Uzbek fanidan
mavzulari potok
asosidagi multiservis
'aliyyil a'ziym
billahil 'aliyyil
illaa billahil
quvvata illaa
falah' deganida
Kompyuter savodxonligi
bo’yicha mustaqil
'alal falah'
Hayya 'alal
'alas soloh
Hayya 'alas
mavsum boyicha


yuklab olish