Difference between revisions of "Avatar"

From Botnets.fr
Jump to navigation Jump to search
m (Text replacement - "Inconnu" to "Unknown")
 
(3 intermediate revisions by the same user not shown)
Line 1: Line 1:
{{Botnet
{{Botnet
|UserAgent=Unknown
|Vector=BTN1,
|CCProtocol=Yahoo Groups
|CCProtocol=Yahoo Groups
|OS1=Unknown
|Feature=Rootkit, Virtual machine detection, Hidden file storage, SOCKS5, File download,
|Etat=Unknown
|BeginYear=2013
|BeginYear=Unknown
|Group=Downloading,
|EndYear=Unknown
|Victime4=
}}
}}

Latest revision as of 19:47, 30 July 2015

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Avatar
Alias
Group Downloading
Parent
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of: Smoke Bot
Campaigns:

Target
Origin
Distribution vector BTN1
UserAgent
CCProtocol Yahoo Groups (Centralized)
Activity 2013 /
Status
Language
Programming language
Operation/Working group

Introduction

Features


Associated images

Checksums / AV databases

Publications

 AuthorEditorYear
Avatar rootkit: the continuing sagaAleksandr Matrosov
Eugene Rodionov
Anton Cherepanov
ESET Welivesecurity2013
Mysterious Avatar rootkit with API, SDK, and Yahoo Groups for C&C communicationAleksandr MatrosovESET2013