Full Disclosure mailing list archives

Re: SSH scans, i caught one


From: Marco van Berkum <marco () obit nl>
Date: Mon, 22 Nov 2010 22:50:38 +0100

A friend pointed me to a botnet called Chuck Norris.

http://www.muni.cz/ics/research/cyber/files/chuck_norris.pdf

This botnet looks exactly similar, tho this one uses telnet to
bruteforce. At least, according to the pdf. Exact same commands,
but this time via SSH. Chuck Norris 2? :)

Grtz,
Marco van Berkum





_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: