Difference between revisions of "Dorifel"
Jump to navigation
Jump to search
m (1 revision imported) |
m (Text replacement - "=Unknown" to "=") |
||
(3 intermediate revisions by the same user not shown) | |||
Line 1: | Line 1: | ||
{{Botnet | {{Botnet | ||
| | |Alias=XDocCrypt, | ||
|Target=Netherlands, | |||
|Vector=Citadel, | |||
|UserAgent= | |||
|CCProtocol=HTTP, | |||
|Feature=Worm, Encrypt files, | |||
|Status= | |||
|BeginYear=2012 | |||
|EndYear= | |||
|Group=Trojan, | |||
|Fonctionnalités=* [[feature::Encrypt files]] Word & Excel (clé RC4: 0D 0A 05 0F 59 38 5A 5B 7B 36 7E 0D 31 69 0D 09) | |Fonctionnalités=* [[feature::Encrypt files]] Word & Excel (clé RC4: 0D 0A 05 0F 59 38 5A 5B 7B 36 7E 0D 31 69 0D 09) | ||
|Illustrations= | |Illustrations= | ||
Line 6: | Line 15: | ||
|Infrastructure= | |Infrastructure= | ||
|Commercialisation= | |Commercialisation= | ||
|UserAgent2= | |UserAgent2= | ||
|UserAgent3= | |UserAgent3= | ||
Line 14: | Line 22: | ||
|Language3= | |Language3= | ||
|Language4= | |Language4= | ||
|CC2= | |CC2= | ||
|CC3= | |CC3= | ||
|OS2= | |OS2= | ||
|OS3= | |OS3= | ||
|OS4= | |OS4= | ||
|Groupe2= | |Groupe2= | ||
|Vendor1=ESET | |Vendor1=ESET | ||
|Vendor2= | |Vendor2= | ||
|Vendor3= | |Vendor3= | ||
|Vendor4= | |Vendor4= | ||
|Vendor5= | |Vendor5= | ||
|Vendor6= | |Vendor6= | ||
|Vendor7= | |Vendor7= | ||
|Vendor8= | |Vendor8= | ||
|Vendor9= | |Vendor9= | ||
|Vendor10= | |Vendor10= | ||
|Exploitkit2= | |Exploitkit2= | ||
|Exploitkit3= | |Exploitkit3= |
Latest revision as of 15:47, 8 August 2015
(Botnet) Link to the old Wiki page : [1] / Google search: [2]
Dorifel | |
---|---|
Alias | XDocCrypt |
Group | Trojan |
Parent | |
Sibling | |
Family | |
Relations | Variants: Sibling of: Prinimalka |
Target | Netherlands |
Origin | |
Distribution vector | Citadel |
UserAgent | |
CCProtocol | HTTP (Centralized) |
Activity | 2012 / |
Status | |
Language | |
Programming language | |
Operation/Working group |
Introduction
Features