A forum for reverse engineering, OS internals and malware analysis 

Forum for completed malware requests.
 #27179  by TETYYSs
 Sat Nov 07, 2015 9:34 am
hi, nobody knows yet
it's just ddos attack, it's just packets. this doesn't say anything about botnet nor even more about malware used to gather botnet
 #27184  by EP_X0FF
 Sat Nov 07, 2015 1:59 pm
Evil-hack.ru is analogue of fuckav.ru script-kiddie forum. General staff and most of users located in Ukraine. I doubt you can find any "interesting" stuff here except few vb/delphi trojans with "ddos" module on board.
 #27190  by tWiCe
 Sat Nov 07, 2015 6:31 pm
ikolor wrote:I would think they use Linux/Xor.DDOS malware.
Why do you guess exactly Xor.DDOS? Why can't it be any of other ChinaZ botnets (Gates, MrBlack, DnsAmp, etc) or Fgt/Tsunami botnets?