Difference between revisions of "Main Page"

From Botnets.fr
Jump to navigation Jump to search
 
(156 intermediate revisions by the same user not shown)
Line 1: Line 1:
__NOTOC__
__NOTOC__


Thank you for your patience, the botnets.fr Wiki is being rebuilt.


[[File:under_construction.jpg|thumb|150px]]
== Introduction ==
This semantic Wiki is developed since November 2011 in the context of a PhD work on the fight against botnets conducted at the LIP 6 laboratory in Paris (Complex networks team). The PhD was successfully [http://blog.crimenumerique.fr/2015/11/21/lutte-contre-les-botnets/ defended in November 2015 in Paris], France. But work continues...


== Botnets ==
{{Div col|3}}
{{Div col|3}}
=== A ===
=== A ===
* [[AbaddonPOS]]
* [[Accdfisa]]
* [[Accdfisa]]
* [[Acebot]]
* [[Acebot]]
Line 15: Line 17:
* [[Agobot]] / [[Gaobot]] Related families: [[Phatbot]], [[Forbot]], [[Polybot]], [[XtremBot]]
* [[Agobot]] / [[Gaobot]] Related families: [[Phatbot]], [[Forbot]], [[Polybot]], [[XtremBot]]
* [[Ainslot]]
* [[Ainslot]]
* [[Akbot]] / Qakbot, Pinkslipbot, Qbot
* [[Akbot]] / [[Qakbot]], [[Pinkslipbot]], [[Qbot]]
* [[Aldi]]
* [[Aldi]]
* [[Alebrije]]
* [[Alebrije]]
* [[AlertLock]]
* [[AlertLock]]
* [[Alina]]
* [[Alphacrypt]]
* [[Alureon]] / [[Olmarik]], [[TDSS]], [[TDL]], [[Popureb]]
* [[Alureon]] / [[Olmarik]], [[TDSS]], [[TDL]], [[Popureb]]
* [[Americana Dreams]]
* [[Americana Dreams]]
* [[Android.Bmaster]]
* [[Andromeda]] / [[Gamarue]]
* [[Andromeda]] / [[Gamarue]]
* [[AnnLoader]]
* [[AnnLoader]]
Line 40: Line 43:
* [[Bamital]]
* [[Bamital]]
* [[Barracuda]]
* [[Barracuda]]
* [[Bashlight]]
* [[Bedep]]
* [[Beebone]] / [[Symmi]], [[Changeup]], [[Vobfus]]
* [[Bereb]] / Related to [[Kiribot]]
* [[Bereb]] / Related to [[Kiribot]]
* [[BernhardPOS]]
* [[BlackEnergy]]
* [[BlackEnergy]]
* [[BlackPOS]] / [[Dump Memory Grabber]]
* [[BlackShades]]
* [[BlackShades]]
* [[Bmaster]]
* [[Bobax]] / [[Bobic]], [[Oderoor]], [[Cotmonger]], [[Hacktool.Spammer]], [[Kraken]]
* [[Bobax]] / [[Bobic]], [[Oderoor]], [[Cotmonger]], [[Hacktool.Spammer]], [[Kraken]]
* [[Bomba Locker]]
* [[Bomba Locker]]
* [[Boxer]]
* [[Bozok]]
* [[Bozok]]
* [[Bredolab]]
* [[Bredolab]]
* [[BrutPOS]]


=== C ===
=== C ===
* [[Carbanak]]
* [[Carberp]] / [[Caberp]], [[Syscron]]
* [[Carberp]] / [[Caberp]], [[Syscron]]
* [[Carna]]
* [[Casier]]
* [[Casier]]
* [[Cbeplay.P]]
* [[Cbeplay.P]]
* [[Cerber]]
* [[Cerberus]]
* [[Cerberus]]
* [[Chameleon]]
* [[Chameleon]]
* [[ChewBacca]]
* [[Chidol]]
* [[Chidol]]
* [[Chthonic]]
* [[Cimbot]]
* [[Cimbot]]
* [[Citadel]]
* [[Citadel]]
* [[Clampi]] / [[Ligats]], [[Ilomo]] or [[Rscan]]
* [[Clampi]] / [[Ligats]], [[Ilomo]] or [[Rscan]]
* [[Coinbitclip]]
* [[CoinVault]]
* [[Comfoo]]
* [[Comfoo]]
* [[Conficker]] / [[Downup]], [[Downadup]], [[Kido]]
* [[Conficker]] / [[Downup]], [[Downadup]], [[Kido]]
* [[CoreBot]]
* [[Coreflood]]
* [[Coreflood]]
* [[Coverton]]
* [[Cridex]] / [[Bugat]], [[Feodo]]
* [[Cridex]] / [[Bugat]], [[Feodo]]
* [[Critroni]] / [[CTB-Locker]]
* [[Critroni]] / [[CTB-Locker]]
* [[Cryakl]] / [[Fantomas]]
* [[CryptoDefense]]
* [[CryptoDefense]]
* [[CryptoLocker]]
* [[CryptoLocker]]
* [[Cryptoblocker]]
* [[Cryptoblocker]]
* [[CryptXXX]]
* [[Cutwail]] / [[Pandex]], [[Mutant]]
* [[Cutwail]] / [[Pandex]], [[Mutant]]
* [[Cythosia]]
* [[Cythosia]]


=== D ===
=== D ===
* [[Daredevil]]
* [[DaRK DDoSseR]]
* [[DaRK DDoSseR]]
* [[Dark-Mailer]]
* [[Dark-Mailer]]
* [[DarkComet]]
* [[DarkComet]]
* [[DarkMegi]]
* [[Darkness]] / [[Optima]], [[Votwup]]
* [[Darkness]] / [[Optima]], [[Votwup]]
* [[Decebal]]
* [[Destory]]
* [[Destory]]
* [[Devdar]]
* [[Devdar]]
* [[Dexter]]
* [[Dharma]]
* [[Dirt Jumper]]
* [[Dirt Jumper]]
* [[Disker]]
* [[Disker]]
Line 85: Line 112:
* [[Dorkbot]] / [[Nrgbot]], [[Ngrbot]]
* [[Dorkbot]] / [[Nrgbot]], [[Ngrbot]]
* [[Duqu]]
* [[Duqu]]
* [[Dyre]] / [[Dyreza]], [[Dyzap]], [[Dyranges]]


=== E ===
=== E ===
* [[Eagle]]
* [[Eggdrop]]
* [[Eggdrop]]
* [[Encriyoko]]
* [[Encriyoko]]
* [[Epubb]]
* [[Epubb]]
* [[Ertfor]]
* [[Esthost]]
* [[Esthost]]
* [[Etumbot]]
* [[Etumbot]]
Line 97: Line 127:
* [[Fakavalert]]
* [[Fakavalert]]
* [[FakeM]]
* [[FakeM]]
* [[Feedorbot]]
* [[Feederbot]]
* [[Festi]]
* [[Festi]]
* [[Fivetoone]] / [[DMSpammer]]
* [[Fivetoone]] / [[DMSpammer]]
Line 105: Line 135:
* [[Flimrans]]
* [[Flimrans]]
* [[Foag]]
* [[Foag]]
* [[Forbot]]
* [[FrameworkPOS]]
* [[Frutas]]
* [[Frutas]]
* [[Fuflo]]
* [[Fuflo]]
Line 110: Line 142:
=== G ===
=== G ===
* [[Galock]]
* [[Galock]]
* [[GamaPoS]]
* [[Gameover]] / [[P2P ZeuS]]
* [[Gameover]] / [[P2P ZeuS]]
* [[Gammima]]
* [[Gammima]]
Line 118: Line 151:
* [[Gendarmerie]]
* [[Gendarmerie]]
* [[Generetic]]
* [[Generetic]]
* [[Getmypass]]
* [[Gheg]] / [[Tofsee]], [[Mondera]]
* [[Gheg]] / [[Tofsee]], [[Mondera]]
* [[Gimemo]]
* [[Gimemo]]
* [[Gh0st RAT]]
* [[Gh0st RAT]]
* [[GlassRAT]]
* [[Goldenbaks]]
* [[Goldenbaks]]
* [[GootKit]]
* [[Goscri]]
* [[Goscri]]
* [[Gozi]] / [[Ursnif]]
* [[Gozi]] / [[Ursnif]], [[Prinimalka]], [[Vawtrak]]
* [[Gpcode]]
* [[Gpcode]]
* [[GranCrab]] / [[GandCrab]]
* [[Grum]] / [[Tedroo]]
* [[Grum]] / [[Tedroo]]
* [[Gumblar]]
* [[Gumblar]]
Line 137: Line 174:
* [[Hermes]]
* [[Hermes]]
* [[HerpesNet]]
* [[HerpesNet]]
* [[Hesperbot]]
* [[Hikit]]
* [[Hikit]]
* [[Hiloti]]
* [[Hiloti]]
* [[Hodprot]]
* [[Hodprot]]
* [[H-Worm]]


=== I ===
=== I ===
Line 151: Line 190:


=== J ===
=== J ===
* [[JackPOS]]
* [[Jagfu]]
* [[Jagfu]]
* [[Jenxcus]]
* [[Jenxcus]]
* [[Jigsaw]]


=== K ===
=== K ===
Line 159: Line 200:
* [[Karn!v0r3x]]
* [[Karn!v0r3x]]
* [[Kelihos]]
* [[Kelihos]]
* [[KINS]]
* [[Kjw0rm]]
* [[Kneber]]
* [[Kneber]]
* [[Koler]]
* [[Kovter]]
* [[Kovter]]
* [[Koobface]]
* [[Koobface]]
Line 168: Line 212:
* [[Leouncia]]
* [[Leouncia]]
* [[Lethic]]
* [[Lethic]]
* [[Lockscreen.CI]]
* [[LockerGoga]]
* [[LockScreen.CI]]
* [[Locky]]
* [[LogPOS]]
* [[Lukitus]]
* [[LusyPOS]]
* [[Lyposit]]
* [[Lyposit]]


Line 176: Line 225:
* [[Makadocs]]
* [[Makadocs]]
* [[Malex]]
* [[Malex]]
* [[MalumPoS]]
* [[Mariachi]]
* [[Mariachi]]
* [[Mariposa]]
* [[Mariposa]]
Line 186: Line 236:
* [[MiniDuke]]
* [[MiniDuke]]
* [[Mirage]]
* [[Mirage]]
* [[Mirai]]
* [[Mlano]]
* [[Mlano]]
* [[Mocbot]] / [[Wargbot]], [[Graweg]]
* [[Mocbot]] / [[Wargbot]], [[Graweg]]
* [[ModPOS]]
* [[Monkif]] / [[ExeDot]], [[DIKhora]]
* [[Monkif]] / [[ExeDot]], [[DIKhora]]
* [[MP-DDoser]]
* [[MP-DDoser]]
Line 195: Line 247:


=== N ===
=== N ===
* [[NanoCore]]
* [[Nemucod]]
* [[Netsky]]
* [[Netsky]]
* [[Nertra]]
* [[Nertra]]
* [[NetTraveler]]
* [[NetTraveler]]
* [[NewPOSThings]]
* [[Ngrbot]]
* [[Ngrbot]]
* [[NitlovePOS]]
* [[Nitol]]
* [[Nitol]]
* [[Nitro]]
* [[Nitro]]
* [[NjRAT]] / Variant: [[H-Worm]]
* [[Njw0rm]]
* [[Nucrypt]] / [[Loosky]], [[Locksky]]
* [[Nucrypt]] / [[Loosky]], [[Locksky]]
* [[Nugache]]
* [[Nugache]]
Line 206: Line 264:


=== O ===
=== O ===
* Obad
* [[Obad]]
* OneWordSub
* [[OneWordSub]]
* [[OphionLocker]]
 
=== P ===
=== P ===
* Patcher / Multibanker, Bankpatcher
* [[Pandora]]
* Pexby
* [[Patcher]] / [[Multibanker]], [[Bankpatcher]]
* Phatbot
* [[Petya]]
* PiceBOT
* [[Pexby]]
* PickPocket
* [[Phatbot]]
* Pirpi
* [[PiceBOT]]
* PlugX / Korplug, Gulpix
* [[PickPocket]]
* Poebot / W32/Linkbot
* [[Pinkslipbot]]
* Poison Ivy
* [[Pirpi]]
* PokerAgent
* [[Pitou]]
* Polybot
* [[PlugX]] / [[Korplug]], [[Gulpix]]
* Ponmocup / Pirminay, Swisyn, Vundo
* [[Pobelka]]
* Pony / Fareit
* [[Poebot]] / [[W32/Linkbot]]
* Poof
* [[Poison Ivy]]
* Poseidon
* [[PokerAgent]]
* Power Bot
* [[Polybot]]
* Pramro
* [[Ponmocup]] / [[Pirminay]], [[Swisyn]], [[Vundo]]
* PrettyPark
* [[Pony]] / [[Fareit]]
* Prinimalka
* [[Poof]]
* Psybot
* [[Poseidon]]
* PTA
* [[Power Bot]]
* Pushdo
* [[Pramro]]
* [[PrettyPark]]
* [[Prinimalka]]
* [[Psybot]]
* [[PTA]]
* [[Punkey]]
* [[Pushdo]]
 
=== Q ===
* [[Qadars]]
 
=== R ===
=== R ===
* Ramnit
* [[Ramnit]]
* Ranbyus
* [[Ranbyus]]
* Rannoh / Matsnu
* [[Ranky]]
* Reposin
* [[Rannoh]] / [[Matsnu]]
* Reveton
* [[Ransom.EY]]
* Revoyem
* [[Ransom.HY]]
* Rocra
* [[Ransom.IF]]
* Rustock / RKRustok, Costrat, Meredrop
* [[Ransom.II]]
* [[Ransom.JU]]
* [[Raxm]]
* [[Rdasrv]]
* [[Regin]]
* [[Reposin]]
* [[Revenge RAT]]
* [[Reveton]]
* [[Revoyem]]
* [[Rocra]]
* [[Rustock]] / [[RKRustok]], [[Costrat]], [[Meredrop]]
 
=== S ===
=== S ===
* Sasser
* [[Sage]]
* Sdbot
* [[Sality]]
* Shylock / Caphaw
* [[SamSam]]
* Silence Locker
* [[Sasser]]
* Silon
* [[ScarePakage]]
* Simplocker
* [[Sdbot]]
* Sinit
* [[Shifu]]
* Skunkx
* [[Shylock]] / [[Caphaw]]
* Slapper
* [[Silence Locker]]
* Smoke Bot
* [[Silent Winlocker]]
* SMSZombie
* [[Silon]]
* Snap
* [[Simda]]
* Sobig / Palyh
* [[Simplocker]]
* Solar / Napolar
* [[Sinit]]
* Spachanel
* [[Sinowal]] / [[Mebroot]], [[Rootkit MBR]], [[Bootkit (botnet)]]
* SpamSoldier
* [[Sir DoOom]]
* SpamThru / Spam-DComServ, Covesmer, Xmiler
* [[Skunkx]]
* Spybot / SDBot, Rbot, URBot, URXBot
* [[Slapper]]
* SpyEye
* [[Smoke Bot]]
* Srizbi / Cbeplay, Exchanger
* [[SMSZombie]]
* Storm / Nuwar, Peacomm, Zhelatin, Tibs
* [[Snap]]
* Stration / Warezov, Opnis
* [[Sobig]] / [[Palyh]]
* Supern0va
* [[Solar]] / [[Napolar]]
* Swizzor
* [[Sopelka]]
* Sykipot
* [[Soraya]]
* [[Spachanel]]
* [[SpamSoldier]]
* [[SpamThru]] / [[Spam-DComServ]], [[Covesmer]], [[Xmiler]]
* [[Spark]]
* [[SpyEye]]
* [[SpyBot]] / [[SDBot]], [[Rbot]], [[UrBot]], [[UrXBot]]
* [[Srizbi]] / [[Cbeplay]], [[Exchanger]]
* [[Storm]] / [[Nuwar]], [[Peacomm]], [[Zhelatin]], [[Tibs]]
* [[Stration]] / [[Warezov]], [[Opnis]]
* [[Studma]]
* [[Supern0va]]
* [[Swizzor]]
* [[Sykipot]]
* [[SynoLocker]]
 
=== T ===
=== T ===
* Tatanarg
* [[TDL-4]] / [[TDL-3]], [[TDSS]], [[DGAv14]]
* Taidoor
* [[Taidoor]]
* TDL-4 / TDL-3, TDSS, DGAv14
* [[Tatanarg]]
* Tequila
* [[Tatanga]]
* Thor
* [[Tequila]]
* TidServ
* [[TeslaCrypt]]
* Tigger / Syzor
* [[The Mask]]
* Tilon
* [[Thor]]
* Tinba / Gataka
* [[TidServ]]
* Torpig
* [[Tigger]] / [[Syzor]]
* Travnet
* [[Tilon]]
* Twitter based botnet
* [[Tinba]] / [[Gataka]]
* [[TinyNuke]]
* [[Tobfy]]
* [[Tobfy.N]]
* [[Torpig]]
* [[TorrentLocker]]
* [[Travnet]]
* [[TreasureHunt]]
* [[Turla]] / [[Uroburos]], [[Snake]]
* [[Twitter based botnet]]
 
=== U ===
=== U ===
* UBot
* [[UBot]]
* Umbra
* [[ULocker]]
* Upas
* [[Umbra]]
* Urausy
* [[Undefined-04]]
* URLZone / Downloader-BQZ.a
* [[Undefined-10]]
* [[Upas]]
* [[Urausy]]
* [[Uremtoo]]
* [[URLZone]] / [[Downloader-BQZ.a]]
 
=== V ===
=== V ===
* Vawtrak
* [[VertexNet]]
* VertexNet
* [[Vicas]]
* Vicas
* [[VinSelf]]
* VinSelf
* [[ViperRAT]]
* Virut
* [[VirLock]]
* VOlk
* [[Virut]]
* [[VOlk]]
 
=== W ===
=== W ===
* Waledac / Waled, SLM, Kelihos, Hilux, Hlux, Nap
* [[Waledac]] / [[Waled]], [[SLM]], [[Kelihos]], [[Hilux]], [[Hlux]], [[Nap]]
* Warbot
* [[Wannacry]]
* Wigon
* [[Warezov]]
* Wiper
* [[Warbot]]
* Wirenet
* [[Weelsof]]
* [[Wigon]]
* [[Wiper]]
* [[Wirenet]]
* [[Wopla]] / [[Pokier]], Slogger
* [[Wopla]] / [[Pokier]], Slogger
=== X ===
=== X ===
* Xarvester / Rlsloup, Rucrzy
* [[Xarvester]] / [[Rlsloup]], [[Rucrzy]]
* [[Xpaj]]
* [[Xtreme RAT]]
 
=== Y ===
=== Y ===
* YoYo
* [[YoYo]]
* Ysreef
* [[Ysreef]]
 
=== Z ===
=== Z ===
* Zapchast
* [[Zapchast]]
* Zegost
* [[Zegost]]
* Zemra
* [[Zemra]]
* ZeroAccess
* [[ZeroAccess]]
* ZeroLocker
* [[ZeroLocker]]
* ZeuS / Zunker
* [[ZeuS]] / [[Zunker]]
* ZeuS - P2P+DGA
* [[ZeuS - P2P+DGA]]
{{Div col end}}
 
==Campaigns==
{{Div col|3}}
=== D ===
* [[Dragonfly]] / [[Energetic Bear]]
{{Div col end}}
{{Div col end}}
==Groups==
==Groups==
* [[Banking]]
* [[Banking]]
* [[Cryptolocker]]
** [[Point-of-sale]]
* [[Click frauding]]
* [[DDoSing]]
* [[DDoSing]]
* [[Fake antivirus]]
* [[Ransomware]]
* [[Police lock]]
** [[Cryptolocker]]
* [[Ransomware (other)]]
** [[Fake antivirus]]
** [[Police lock]]
** [[Ransomware (other)]]
* [[RAT]] / [[Remote administration trojan]]
* [[RAT]] / [[Remote administration trojan]]
* [[Spying]]
* [[Spying]]
** [[Destructive]]
* [[Spamming]]
* [[Spamming]]
* [[Stealing]]
* [[Stealing]]
Line 331: Line 463:
* Exchange
* Exchange
* Mules
* Mules
* Pay-per-install
* Security software check
* Security software check
* Traffic
* Traffic
* VPN
* VPN
== Panels ==
=== Z ===
* [[Zemra (panel)]]
== Exploit kits/packs ==
{{Div col|3}}
=== A ===
* [[Alpha Pack]]
* [[Angler]]
* [[Archie]]
* [[Assoc AID]]
* [[Astrum]]
=== B ===
* [[Best]]
* [[Black Dragon]]
* [[Blackhole]]
* [[Bleeding Life]]
=== C ===
* [[ChePack]]
* [[CkVip]]
* [[Cool Exploit Kit]]
* [[Cool Pack]]
* [[CritXPack]] / [[Vintage Pack]]
=== D ===
* [[Dotkachef]]
=== E ===
* [[EgyPack]]
* [[Eleonore]]
=== F ===
* [[Fiesta]]
* [[Flash (Exploit kit)]]
* [[Flimkit]]
* [[Fragus]]
=== G ===
* [[Glazunov]]
* [[Gong Da]] / [[Gongdad]]
* [[GrandSoft]]
=== H ===
* [[Hanjuan]]
* [[Hierarchy]]
=== I ===
* [[Impact]]
* [[Incognito]]
* [[Infinity (Exploit kit)]]
=== K ===
* [[KaiXin]] / [[Gondad]]
* [[Kore]]
=== L ===
* [[LightsOut]]
=== M ===
* [[Magnitude]]
* [[MPack]]
* [[Mushroom]]
=== N ===
* [[NeoSploit]]
* [[Neutrino]]
* [[Nice]]
* [[Niteris]]
* [[Nuclear Pack]]
* [[Null Hole]]
=== P ===
* [[Phoenix]]
* [[Private EK]]
* [[ProPack]]
=== R ===
* [[Red Dot]]
* [[RedKit]] / [[Goon]], [[Puerto]]
* [[RIG]]
=== S ===
* [[Sakura]]
* [[Sava]]
* [[Serenity]] / [[Serenity Pack]]
* [[Siberia]] / [[Siberia Private]]
* [[Sibhost]] / [[Kore]], [[Urausy EK]], [[BestAV EK]]
* [[SofosFO]]
* [[Spartan]]
* [[SPL Pack]]
* [[Styx]] / [[Kein]]
* [[Sundown]]
* [[Sweet Orange]]
=== T ===
* [[T-Pack]]
* [[Techno XPack]]
=== V ===
* [[Vintage Pack]]
=== X ===
* [[x2o]] / [[Redkit light]]
=== Y ===
* [[Yang Pack]]
=== Z ===
* [[Zhi Zhu]]
{{Div col end}}
== Malware and botnet related Services ==
=== C ===
* [[Check4Me]]
=== I ===
* [[Iframeshop]]
=== P ===
* [[Prepaidex]]
=== S ===
* [[Scan4you]]
* [[SollHost]]

Latest revision as of 12:17, 14 March 2020


Introduction

This semantic Wiki is developed since November 2011 in the context of a PhD work on the fight against botnets conducted at the LIP 6 laboratory in Paris (Complex networks team). The PhD was successfully defended in November 2015 in Paris, France. But work continues...

Botnets

A

B

C

D

E

F

G

H

I

J

K

L

M

N

O

P

Q

R

S

T

U

V

W

X

Y

Z

Campaigns

Groups

Criminal services

  • Bulletproof hosting
  • DDoSing / Stress test
  • Encryption
  • Exchange
  • Mules
  • Pay-per-install
  • Security software check
  • Traffic
  • VPN

Panels

Z

Exploit kits/packs

Malware and botnet related Services

C

I

P

S