Difference between revisions of "Pobelka"

From Botnets.fr
Jump to navigation Jump to search
m (Text replacement - "=Unknown" to "=")
 
Line 1: Line 1:
{{Botnet
{{Botnet
|Introduction=[[Pobelka]] is reported an instance of the [[variant of::Citadel]] botnet. A report by Fox-IT claims that the same campaign was previously using [[variant of::SpyEye]].
|Introduction=[[Pobelka]] is reported an instance of the [[variant of::Citadel]] botnet. A report by Fox-IT claims that the same campaign was previously using [[variant of::SpyEye]].
|UserAgent=
|Parent=Citadel,
|CCProtocol=
|Target=
|Status=
|BeginYear=2011
|BeginYear=2011
|EndYear=
|Group=Banking
|Group=Banking
|Groupe2=Stealing
|Groupe2=Stealing
|Victime1=Netherlands
|Victime1=Netherlands
|Victime2=Germany
|Victime2=Germany
|Vector=
|Exploitkit2=
|Exploitkit2=
|Exploitkit3=
|Exploitkit3=

Latest revision as of 17:09, 20 August 2015

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Pobelka
Alias
Group Banking
Parent Citadel
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of:
Campaigns:

Target
Origin
Distribution vector
UserAgent
CCProtocol
Activity 2011 /
Status
Language
Programming language
Operation/Working group

Introduction

Pobelka is reported an instance of the Citadel botnet. A report by Fox-IT claims that the same campaign was previously using SpyEye.

Features

Associated images

Checksums / AV databases

Publications

 AuthorEditorYear
Demystifying PobelkaMichael SandeeFox-IT2013
The Pobelka botnet - a command and control case studyRickey GeversDigital Investigation2012