Uremtoo

From Botnets.fr
Jump to navigation Jump to search
The printable version is no longer supported and may have rendering errors. Please update your browser bookmarks and please use the default browser print function instead.

(Botnet) Link to the old Wiki page : [1] / Google search: [2]

Uremtoo
Alias
Group Police lock
Parent
Sibling
Family
Relations Variants:

Sibling of:
Parent of:
Distribution of:
Campaigns:

Target
Origin
Distribution vector Phoenix
UserAgent Opera/9.80 (Windows NT 5.1; U; Edition Yx; en) Presto/2.9.168 Version/11.52
CCProtocol
Activity /
Status
Language
Programming language
Operation/Working group

Introduction

It's a variant of Urausy

md5 :

 bb9ba44aa660825c91b0025c516588b4 24/02/13
 ec35e1de8cd867d58e7583e15cce15b4 22/02/13

http call :

   http://gogosearch.vizvaz .com/news/bf-iqfzcj-ynsp_gbnnjk-lzst-[REDACTED]]vn-pyaktw-clsnuqlgnsrpsh.html 146.185.255.207 24/02/13

Features

Associated images

Checksums / AV databases

Publications