Difference between revisions of "Festi"

From Botnets.fr
Jump to navigation Jump to search
m (1 revision imported)
Line 1: Line 1:
{{Botnet
{{Botnet
|CCProtocol=HTTP,
|Feature=Send spam,
|Status=Unknown
|BeginYear=Unknown
|EndYear=Unknown
|Group=Spamming
|Fonctionnalités=* [[feature::Domain generation algorithm]]
|Fonctionnalités=* [[feature::Domain generation algorithm]]
* [[feature::Rootkit]]
* [[feature::Rootkit]]
Line 19: Line 25:
* 133import.ru (178.162.179.70)
* 133import.ru (178.162.179.70)
* 02school33.ru (178.162.179.70)
* 02school33.ru (178.162.179.70)
|UserAgent=Unknown
|Language1=Russian
|Language1=Russian
|CCProtocol=Unknown
|Target=Unknown
|Status=Unknown
|BeginYear=Unknown
|EndYear=Unknown
|Group=Spamming
|Groupe2=DDoSing
|Groupe2=DDoSing
|Victime4=
|Victime4=
}}
}}

Revision as of 21:46, 2 August 2015

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Festi
Alias
Group Spamming
Parent
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of:
Campaigns:

Target
Origin
Distribution vector
UserAgent
CCProtocol HTTP (Centralized)
Activity Unknown / Unknown
Status Unknown
Language
Programming language
Operation/Working group

Introduction

Features


Associated images

Checksums / AV databases

Publications

 AuthorEditorYear
An overview of messaging botnetsFrançois PagetMcAfee2013
Festi botnet analysis & investigationAleksandr Matrosov
Eugene Rodionov
ESET2012
King of spam:Festi botnet analysisAleksandr Matrosov
Eugene Rodionov
ESET2012
Spam botnets: The fall of Grum and the rise of FestiThomas MorrisonSpamhaus2012
Spambot evolution 2011SecureWorks' Counter Threat UnitDELL SecureWorks2011