427 Botnet fm qxd



Download 6,98 Mb.
Pdf ko'rish
bet107/387
Sana03.12.2022
Hajmi6,98 Mb.
#878307
1   ...   103   104   105   106   107   108   109   110   ...   387
Bog'liq
Botnets - The killer web applications

www.syngress.com
130
Chapter 4 • Common Botnets
427_Bot_ch04.qxt 1/9/07 3:03 PM Page 130


Q: 
What is one of the most common methods bots use to spread and infect
new systems?
A: 
All the major bot families target insecure or poorly secured network
shares.Typically, the bot contains a list of common usernames and pass-
words to attempt, as well as some capability to seek out usernames and
passwords found on the target system.
Q: 
How do bots typically ensure that they continue running?
A: 
Bots generally modify the Windows registry to add values to registry keys
to make sure that the bot software is automatically started each time
Windows starts.
Q: 
What unique method of propagation was introduced by the Agobot
family?
A: 
The Agobot family of bots (also known as Gaobot or Phatbot) uses P2P
networking as a unique method of spreading to new systems.
Q: 
Which bot family pioneered the use of encryption algorithms to protect
the code from being reverse-engineered or analyzed?
A: 
The RBot family uses one or more runtime executable packing utilities
such as Morphine, UPX, ASPack, PESpin, EZIP, PEShield, PECompact,
FSG, EXEStealth, PEX, MoleBox, or Petite to encrypt the bot code.
Q: 
What is unique about the Spybot family of bots?
A: 
Spybot is based on SDBot but adds spyware capabilities such as keystroke
logging and data theft or password stealing.
www.syngress.com
Common Botnets • Chapter 4
131
Frequently Asked Questions
The following Frequently Asked Questions, answered by the authors of this
book, are designed to both measure your understanding of the concepts pre-
sented in this chapter and to assist you with real-life implementation of these
concepts. To have your questions about this chapter answered by the author,
browse to 

Download 6,98 Mb.

Do'stlaringiz bilan baham:
1   ...   103   104   105   106   107   108   109   110   ...   387




Ma'lumotlar bazasi mualliflik huquqi bilan himoyalangan ©hozir.org 2024
ma'muriyatiga murojaat qiling

kiriting | ro'yxatdan o'tish
    Bosh sahifa
юртда тантана
Боғда битган
Бугун юртда
Эшитганлар жилманглар
Эшитмадим деманглар
битган бодомлар
Yangiariq tumani
qitish marakazi
Raqamli texnologiyalar
ilishida muhokamadan
tasdiqqa tavsiya
tavsiya etilgan
iqtisodiyot kafedrasi
steiermarkischen landesregierung
asarlaringizni yuboring
o'zingizning asarlaringizni
Iltimos faqat
faqat o'zingizning
steierm rkischen
landesregierung fachabteilung
rkischen landesregierung
hamshira loyihasi
loyihasi mavsum
faolyatining oqibatlari
asosiy adabiyotlar
fakulteti ahborot
ahborot havfsizligi
havfsizligi kafedrasi
fanidan bo’yicha
fakulteti iqtisodiyot
boshqaruv fakulteti
chiqarishda boshqaruv
ishlab chiqarishda
iqtisodiyot fakultet
multiservis tarmoqlari
fanidan asosiy
Uzbek fanidan
mavzulari potok
asosidagi multiservis
'aliyyil a'ziym
billahil 'aliyyil
illaa billahil
quvvata illaa
falah' deganida
Kompyuter savodxonligi
bo’yicha mustaqil
'alal falah'
Hayya 'alal
'alas soloh
Hayya 'alas
mavsum boyicha


yuklab olish