Carberp reverse engineering

From Botnets.fr
Jump to navigation Jump to search

(Publication) Google search: [1]

Carberp reverse engineering
Botnet Carberp
Malware
Botnet/malware group
Exploit kits
Services
Feature
Distribution vector
Target
Origin
Campaign
Operation/Working group
Vulnerability
CCProtocol
Date 2011 / 3 juillet 2011
Editor/Conference Università Italiana Cracking
Link http://quequero.org/Carberp Reverse Engineering (Archive copy)
Author Giuseppe Bonfa
Type

Abstract

We are going to talk about Trojan Banker Carberp from a Reverse Engineering point of view. Carberp is a Botnet delivered in the usual ways of Blackmarket selling, designed to be a Trojan Spy and specifically a Banker similar to SpyEye and ZeuS, able to perform Man in the Browser attacks, steal victim credentials, kill antivirus softwares, remove other bots like SpyEye and ZeuS and much more...

Bibtex

 @misc{Lua error: Cannot create process: proc_open(/dev/null): failed to open stream: Operation not permitted2011BFR994,
   editor = {Università Italiana Cracking},
   author = {Giuseppe Bonfa},
   title = {Carberp reverse engineering},
   date = {Error: Invalid time.},
   month = Error: Invalid time.,
   year = {2011},
   howpublished = {\url{http://quequero.org/Carberp_Reverse_Engineering}},
 }