Difference between revisions of "Kraken"

From Botnets.fr
Jump to navigation Jump to search
m (1 revision imported)
 
 
(5 intermediate revisions by the same user not shown)
Line 1: Line 1:
{{Botnet
{{Botnet
| Introduction=Ce botnet, particulièrement actif en 2008 (de 100 000 à 400 000 zombies estimés en avril de cette année), est connu pour une activité d'envoi de courriels non sollicités que l'on estimait à 9 milliards par jours.
|Alias=Oderoor
| Fonctionnalités=* Recherche de C&C à travers un protocole chiffré
|Parent=Bobax
* Envoi de courriels non sollicités
|CCProtocol=UDP/447, TCP/447, Custom protocol with DGA,
| Commandes=
|Feature=Domain generation algorithm,
| Infrastructure=
|BeginYear=2008
| Commercialisation=
| UserAgent=Unknown
| CCProtocol=HTTP, ,
| Target=Microsoft Windows, , ,  
| BeginYear=2008
| EndYear=Unknown
| Status=Unknown
| Victime1=
| Victime2=
| Victime3=
| Victime4=
| Alias=Oderoor
| Vendor1=Microsoft Malware Protection Centre
| Alias=
| Vendor2=
| Alias=
| Vendor3=
| Alias=
| Vendor4=
| Alias=
| Vendor5=
| Alias=
| Vendor6=
| Alias=
| Vendor7=
| Alias=
| Vendor8=
| Alias=
| Vendor9=
| Alias=
| Vendor10=
}}
}}

Latest revision as of 01:18, 3 August 2015

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Kraken
Alias Oderoor
Group
Parent Bobax
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of:
Campaigns:

Target
Origin
Distribution vector
UserAgent
CCProtocol UDP/447 (Port), TCP/447 (Port), Custom protocol with DGA (Distributed-centralized)
Activity 2008 /
Status
Language
Programming language
Operation/Working group

Introduction

Features


Associated images

Checksums / AV databases

Publications

 AuthorEditorYear
An overview of messaging botnetsFrançois PagetMcAfee2013
Encyclopedia entry: Win32/OderoorMatt McCormackMicrosoft Malware Protection Centre2008
Kraken botnet infiltrationPedram AminiTipping Point2008
Owning Kraken zombiesCody PierceTipping Point2008