Dorkbot

From Botnets.fr
Revision as of 00:02, 5 February 2015 by Eric.freyssinet (talk | contribs) (1 revision imported)
Jump to navigation Jump to search

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Dorkbot
Alias Ngrbot
Group DDoSing
Parent
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of:
Campaigns:

Target Microsoft Windows
Origin
Distribution vector
UserAgent Unknown
CCProtocol IRC (Centralized)
Activity 2011 / Unknown
Status Unknown
Language
Programming language
Operation/Working group

Introduction

Dorkbot appelé également Ngrbot représente un réseau de machines zombies infectées par le cheval de Troie du même nom. Il est notamment connu pour ses modes de réplications divers tels que la messagerie instantané, les réseaux sociaux (notamment Facebook) et les périphériques amovibles.

Features

Associated images

Checksums / AV databases

Publications

 AuthorEditorYear
A chat with NGR BotChong Rong HwaInfoSec Institude2012
An analysis of Dorkbot’s infection vectors (part 2)Horea CoroiuMicrosoft Malware Protection Centre2012
Analysis of ngrBotKimberlyStopMalvertising2011
Dorkbot: conquistando LatinoaméricaPablo RamosESET2012
MSRT March 2012: breaking badRex PlantadoMicrosoft2012
NGRBot spreads via chatNiranjan JayanandMcAfee2012
Ngrbot steals information and mine BitcoinsSonicWALL UTM research teamSonicWALL2011
The Dorkbot risesBernadette IrincoTrend Micro2012