Difference between revisions of "Rocra"

From Botnets.fr
Jump to navigation Jump to search
m (Remplacement du texte — « =Windows » par « =Microsoft Windows »)
 
 
(One intermediate revision by the same user not shown)
Line 1: Line 1:
{{Botnet
{{Botnet
|Target=Microsoft Windows
|UserAgent=Aucun
|UserAgent=Aucun
|Language1=Russian
|Language2=Chinese
|CCProtocol=HTTP
|CCProtocol=HTTP
|Target=Microsoft Windows
|Status=Sinkholed
|Status=Sinkhole
|BeginYear=2007
|BeginYear=2007
|EndYear=2013
|EndYear=2013
|Vector=
|Group=Spying,
|Language1=Russian
|Language2=Chinese
|Exploitkit2=
|Exploitkit2=
|Exploitkit3=
|Exploitkit3=

Latest revision as of 22:26, 31 July 2015

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Rocra
Alias
Group Spying
Parent
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of:
Campaigns: Red October

Target Microsoft Windows
Origin
Distribution vector
UserAgent Aucun
CCProtocol HTTP (Centralized)
Activity 2007 / 2013
Status Sinkholed
Language
Programming language
Operation/Working group

Introduction

Features

Associated images

Checksums / AV databases

Publications

 AuthorEditorYear
Analysis of the malware of Red October - Part 1RootBSD
Malware.lu
Malware.lu2013
Analysis of the malware of Red October - Part 2RootBSD
Malware.lu
Malware.lu2013
The "Red October" campaign - An advanced cyber espionage network targeting diplomatic and government agenciesGReATKaspersky lab2013