Thursday, March 26, 2015

Exploit for Malware


 Link to Exploit Site


Link to Exploit Site, as it name suggests, refers to the presence of links to malicious websites inside a legitimate website without the knowledge of the administrator. Once users click on the link, they are redirected to a website with malicious code that takes advantage of vulnerabilities in outdated programs or plugins in your device to download and install malware.
Contact : 
ym : cybersuriya73@gmail.com
skype : suriya.cyber




Beta Botnet

Beta Botnet 1.7.0.1 Full Setup 
Contact : cybersuriya73@yahoo.com
skype: suriya.cyber




Version 1.7.0.1

Bot
File search now is more configurable:
  a) Allows folder exclusions (To help prevent useless results/search time)
  b) Allows files with certain strings found in their filename to be uploaded
  c) Maximum search terms increased to 128, maximum filename terms is 64
  d) Parameter "nocache" allows you to have already sent files uploaded again
Botkiller updated once again. New techniques added and existing code revised.
Fixed issue where IE would freeze on load when Avast! was disabled by the AV killer
Injector now more compatible with games/anti-cheat components
Fixed issue with formgrabber sometimes uploading the wrong part of captured form content in Firefox and Chrome
Bot now uploads select header fields with each formgrab capture (when available): User-Agent, Referer, Cookie and Accept-Languages
Fixed DNS Modifier not working with latest versions of Firefox (22+). Another function had to be hooked.
Fixed issue where sometimes UAC prompt would come up even after accepting it because there was a delay in processing messages from the window queue
A couple tweaks to installation code
Misc beneficial changes to bot protection (persistence) code
Fixed a few issues with updater
Windows Defender is now thoroughly disabled instead of just turned off

Panel
Extended the GeoIP information displayed (ASN Name, City information) when available. *
Fixed IE formgrab logs sometimes appearing as "Unknown" browser
Fixed formgrab "view detail" page content sometimes causing table to stretch too far, distorting other table cells.
Fixed issue where searching bots with comments would return zero results
Fixed invalid links for page numbers
Misc fixes to panel HTML code

Notes
The size of the geolite imports is quite large so if users have no use for this, they can simply choose not to import it


Bot - Major
64-bit userkit
POP3 grabber
Chrome grabber / DNS redirection support
File search - Search all files' content for keywords and upload files containing matches to panel
Config editor to edit builds -- Change group names, and modify other minor settings/initial behavior
Block installation of some bootkits (Mainly Rovnix(Carberp) - Can toggle on/off from panel)
Enhanced bot resource protection (persistence) on some systems (around 40%~) (Much harder to remove in some cases)

Bot - Minor
Run DLL/Jar files
File size now less than 140kb
Fetches UAC social engineering translations from panel
ESET AV Killer now works on Vista+, AV Killer updated to include Ahnlab v3 Lite (XP only), BitDefender (on minimal config)
Better support for Avast sandbox. All sandbox prompts are now automatically accepted to increase download/exec rate.
Proactive bypasses updated (Trend Micro/McAfee now fully bypassed, BitDefender bypass finished but not 100% reliable)
PuTTY Live login grabber now works with latest update (0.63). New code locations and improper typecasting previous caused crash in latest version (0.63)
Improved crypter compatibility
Added new detection techniques to botkiller and increased overall efficiency

Panel - Minor
Enhanced search features
TOR Blacklist
Remove bot/other buttons on bot list
Graphs added to statistics page / Panel settings reorganized
Can now delete individual form/login grab entries
Can now add lists of formgrab url masks at a time (Instead of just one at a time)
Modify main bot list view settings (Change display order and maximum number of bots displayed per page)
Main index now displays top 5 countries graph and world map based on bot count
GeoIP updated

Panel - Major
Notes system. Leave notes for single/all user(s)
Task failure tracking
AV Checker (s4y)
Event logs page added in panel settings
Bot grouping via group names
Formgrabber filter management options increased, form search enhanced and other useful changes to formgrab feature
Login grabber can now be toggled on/off


Fixes/Tweaks
Fixed issue where large amounts of page numbers would take up entire webpage
Fixed issue with formgrab filter management not properly handling some SQL queries
Fixed issue with task processing where if bot received more than 3 tasks at once, it would only process first 3, and may sometimes crash while attempting to parse the 4th one
Fixed crash issue related to thread creation in some processes
Fixed rare issue in process injector where an improperly initialized structure could result in fatal crash
Fixed a few memory leak issues
Fixed formgrabber compatibility with Firefox versions >= 22
Fixed issue with hook restorer not restoring system call hook
Fixed formgrabber for Windows 8, however, userkit is still having issues
Tweak: Systems configured to use a proxy for internet access are now supported if bot cannot access directly after cycling through C&C list
Tweak: HTTP Component now handles `302 Found` issues better. However, issue is considered *not* completely resolved.
Tweak: More AVs detected and displayed on panel statistics
Tweak: Grabbed logins exports are now in standard ftp://user:pass@domain.com -OR- type://user:pass@domain.com:port
Tweak: UAC Social engineering trick no longer uses cmd.exe on Windows 7 systems
Tweak: Duplicate bot issue should be *less* of a problem now. However, not completely fixed