Difference between revisions of "Andromeda"
Jump to navigation
Jump to search
Line 7: | Line 7: | ||
* SOCKS4 proxy module | * SOCKS4 proxy module | ||
* Rootkits | * Rootkits | ||
|Alias=Gamarue, | |||
|Target=Microsoft Windows | |Target=Microsoft Windows | ||
|UserAgent=Mozilla/4.0 | |UserAgent=Mozilla/4.0 | ||
|CCProtocol=HTTP | |CCProtocol=HTTP | ||
|Feature=File download, | |Feature=File download, | ||
|BeginYear=09 | |BeginYear=2011-09 | ||
|EndYear=Unknown | |EndYear=Unknown | ||
|Group=Banking | |Group=Banking |
Revision as of 14:30, 18 July 2015
(Botnet) Link to the old Wiki page : [1] / Google search: [2]
Andromeda | |
---|---|
Alias | Gamarue |
Group | Banking |
Parent | |
Sibling | |
Family | |
Relations | Variants: Sibling of: |
Target | Microsoft Windows |
Origin | |
Distribution vector | |
UserAgent | Mozilla/4.0 |
CCProtocol | HTTP (Centralized) |
Activity | 2011-09 / Unknown |
Status | |
Language | |
Programming language | |
Operation/Working group |
Introduction
Andromeda est un botnet basé sur HTTP qui inclus
Plugins :
- Keyloggers
- Form grabbers
- SOCKS4 proxy module
- Rootkits
Features