SpywareInfo Forum: Pandemic of the botnets 2009 - SpywareInfo Forum

Jump to content

  • (4 Pages)
  • +
  • « First
  • 2
  • 3
  • 4
  • You cannot start a new topic
  • You cannot reply to this topic

Pandemic of the botnets 2009

#46 User is offline   apluswebmaster Icon

  • AplusWebMaster
  • PipPipPipPipPip
  • Group: Full Member
  • Posts: 4,878
  • Joined: 18-May 04

Post icon  Posted 11 November 2009 - 01:27 PM

FYI...

The Gumblar system
- http://www.viruslist...logid=208187897
November 11, 2009 - "... Analysis of some infected websites showed that the only way to inject the infection of Gumblar was by using FTP access, because those websites have no server-side scripting. Later this was proved by an analysis of FTP log files... it's a fully automated system. It's a new generation of self-building botnets. This system is actively attacking visitors of a website and once these visitors have been infected with the Windows executable, it grabs FTP credentials from the victim machines. The FTP accounts are then used to infect every webpage on new webservers. This way the system extends the number of infected pages, thus attacking more and more computers. The entire process is automated and the owner of the system just needs to adjust the system and update the Trojan executable which steals passwords and the exploits used to attack the browser. The system works in a constant loop of attacking new computers, getting new FTP accounts and infecting new servers..."

(Screenshots available at the URL above.)

:ph34r::grrr::ph34r:
AplusWebMaster
~ Are you up to date or vulnerable to Hackers? ...or both?
Security is only as good as the weakest link.
~ ISC ~
.

  • (4 Pages)
  • +
  • « First
  • 2
  • 3
  • 4
  • You cannot start a new topic
  • You cannot reply to this topic

1 User(s) are reading this topic
0 members, 1 guests, 0 anonymous users


Support the forum!