Difference between revisions of "Andromeda"
Jump to navigation
Jump to search
m (Text replacement - "=Unknown" to "=") |
|||
Line 14: | Line 14: | ||
|Feature=File download, | |Feature=File download, | ||
|BeginYear=2011-09 | |BeginYear=2011-09 | ||
|Group=Downloading, | |||
|Group= | |||
|Fonctionnalités=* Anti-VM/Anti-Debugging | |Fonctionnalités=* Anti-VM/Anti-Debugging | ||
* Sandbox Detection | * Sandbox Detection |
Latest revision as of 16:02, 19 August 2015
(Botnet) Link to the old Wiki page : [1] / Google search: [2]
Andromeda | |
---|---|
Alias | Gamarue |
Group | Downloading |
Parent | |
Sibling | |
Family | |
Relations | Variants: Sibling of: |
Target | Microsoft Windows |
Origin | |
Distribution vector | Smoke Bot |
UserAgent | Mozilla/4.0 |
CCProtocol | HTTP (Centralized) |
Activity | 2011-09 / |
Status | |
Language | |
Programming language | |
Operation/Working group |
Introduction
Andromeda est un botnet basé sur HTTP qui inclus
Plugins :
- Keyloggers
- Form grabbers
- SOCKS4 proxy module
- Rootkits
Features