Difference between revisions of "Hamweq"

From Botnets.fr
Jump to navigation Jump to search
 
m (Text replacement - "=Unknown" to "=")
 
(6 intermediate revisions by the same user not shown)
Line 1: Line 1:
{{Botnet
{{Botnet
| Introduction=Ver qui se propage via des périphériques amovibles (clés USB) et se connecte via IRC pour recevoir ses commandes.
|Target=Microsoft Windows,
| Fonctionnalités=
|Vector=Removable media,
* Attaques en déni de service distribué [[fonction::DDoS]]
|UserAgent=
* Téléchargement de charges malveillantes [[fonction::Payload]]
|CCProtocol=IRC
| Commandes=
|Feature=DDoS, File download
| Infrastructure=Serveurs IRC:
|Status=
|BeginYear=
|EndYear=
|Group=DDoSing, Downloading,
|Commandes=
|Infrastructure=Serveurs IRC:
* tassweq.com
* tassweq.com
* lebanonbt.info
* lebanonbt.info
Line 18: Line 23:
* oooooooo.dyndns.info
* oooooooo.dyndns.info
* dci.sinip.es
* dci.sinip.es
| Commercialisation=
| UserAgent=Unknown
| CCProtocol=IRC, ,
| Target=Microsoft Windows, , ,
| BeginYear=Unknown
| EndYear=Unknown
| Status=Unknown
| Victime1=
| Victime2=
| Victime3=
| Victime4=
}}
}}

Latest revision as of 15:47, 8 August 2015

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Hamweq
Alias
Group DDoSing, Downloading
Parent
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of:
Campaigns:

Target Microsoft Windows
Origin
Distribution vector Removable media
UserAgent
CCProtocol IRC (Centralized)
Activity /
Status
Language
Programming language
Operation/Working group

Introduction

Features


Associated images

Checksums / AV databases

Publications

 AuthorEditorYear
Zeroing in on malware propagation methodsJoe Faulhaber
David Felstead
Paul Henry
Jeff Jones
Ellen Cram Kowalczyk
Jimmy Kuo
John Lambert
Marc Lauricella
Aaron Margosis
Michelle Meyer
Anurag Pandit
Anthony Penta
Dave Probert
Tim Rains
Mark E. Russinovich
Weijuan Shi
Adam Shostack
Frank Simorjay
Hemanth Srinivasan
Holly Stewart
Matt Thomlinson
Jeff Williams
Scott Wu
Terry Zink
Microsoft2011