+ Reply to Thread
Page 1 of 3 123 LastLast
Results 1 to 10 of 21
  1. #1
    Junior Member
    Join Date
    Aug 2008
    Posts
    6

    botnet communication

    hi :]

    i would like to ask a question about botnet.. what is the best way to make boots communicate/get commands instead of irc?

    sorry for my english, it's late now an i can't concentrate..

    what i mean is that i want to keep a botnet alive as much long as it is possible. as all of us know, the investigation teams usually detect the place where bots concentrate/meet for listening the commands and then block/kill the place (irc network/web page).. i was wondering if it is possible to creat something unstoppable, for example the botnet, where bot communicate to each other in order to decide what to do, where to concentrate/meet if the main "meeting place" is disconcted/unresolveable...

    again sorry for english.. i can correct places which makes you feel confused..

    i hope you uderstood what i am asking...

    sweet dreams

  2. #2
    Senior Member
    Join Date
    Jun 2008
    Location
    0x40000
    Posts
    1,528
    Make your own webpage with a file on it.
    Let the bots download the file and in the file is the irc server to connect to
    I did something like this a few years ago, but can't find the source anymore, sorry.

  3. #3
    Junior Member
    Join Date
    Aug 2008
    Posts
    6
    heh.. i want something dinamic. as i have already mentioned earlier, the static irc server can be easily cought by snifing botnet's activity, i mean smart people can find out where are bots conncting to and kill the place. i need something dinamic.. for example it would be very good if one of the bot's could "say" to others:"hey, i am today the irc server. come to me!" and then send an email or some other notification with message dealing the contacting server address.. maybe it is too dificult to understand what i want... ;/

  4. #4
    Senior Member
    Join Date
    Mar 2005
    Posts
    421
    "Make your own webpage with a file on it." lol.

    as soon as ur website is found, it will be shut down, better yet. you'll be traced.
    bad method, if a viri/trojan goes big that site is down in seconds.

    u could rely on a sh1tload of methods really, one being writing a socket that connects to a mail server and reads a mail with settings or w/e

    its way more evasive, irc is a very nice choice since its such a well used utility to community, u have no probs finding a irc server. u might have probs with bandwidth limits if u use a crap site as ur gateway, simply write a email client and gain settings like that, read latest mail for settings and ur set.
    -.-

  5. #5
    Senior Member drizzle's Avatar
    Join Date
    Nov 2007
    Location
    Sacramento, CA
    Posts
    320
    "Make your own webpage with a file on it." lol.

    as soon as ur website is found, it will be shut down, better yet. you'll be traced.
    bad method, if a viri/trojan goes big that site is down in seconds.
    Anyone thought of a no-ip account?
    Just a suggestion


    100% FUD Binder\Cryptor\Downloader
    http://bcd-project.info/
    Check out my blog
    http://fullyundetected.com/

  6. #6
    Senior Member
    Join Date
    Jul 2008
    Location
    mid usa
    Posts
    118

  7. #7
    Senior Member
    Join Date
    Mar 2005
    Posts
    421
    Quote Originally Posted by drizzle View Post
    Anyone thought of a no-ip account?
    Just a suggestion
    no-ip accounts will get shut down just as easily as any website, if the app goes "wild" and a fall into the hands of a analyst then your hardcoded addresses can just be closed to prevent the app from working.

    hide in DNS requests etc, way more evasive.
    -.-

  8. #8
    Senior Member albinoskunk's Avatar
    Join Date
    Jun 2008
    Posts
    566
    you could always try p2p technology, i mean, making a p2p network takes alot of time and effort, but the pros are that, it will be impossible for anyone to shut one down because there is never one IP address to shutdown, no one bot on the network knows all the IPs in your network so if one is captured it could only hand over a select amount that is infected

  9. #9
    Senior Member
    Join Date
    Mar 2005
    Posts
    421
    why write a p2p network when there's already so many opensource p2p clients? just take their protocol and send customized packets to YOUR p2p client which has a hook on send/recv, that way u can use the p2p client as ur rat client.
    -.-

  10. #10
    Senior Member
    Join Date
    Mar 2005
    Posts
    421
    sorta wierd though, ltt dont want anything besides RAT's on the site, dont even want ppl to call em troj's, i find it hard seeing him allow botnet discussions...
    -.-

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. [C++]How to define command in Botnet to read from a file
    By aviv1233 in forum General Programming Help
    Replies: 4
    Last Post: 15-10-2009, 16:05
  2. IcePoint BotNet Attacker v1.0
    By waycheat in forum Malware Samples and Information
    Replies: 16
    Last Post: 04-01-2009, 00:20
  3. Encrypting Communication
    By Kill3r7 in forum Delphi Help
    Replies: 13
    Last Post: 10-03-2008, 17:14

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts

Search Engine Friendly URLs by vBSEO 3.6.0 ©2011, Crawlability, Inc.