The same Skype ID malware author used to run IoT Botnet and apply for jobs
True to the biggest failure of all time, a malware developer uses the same Skype address to advertise his IoT botnet and also the Skype ID itself to apply for freelance jobs.
Nicknamed DadyL33T, this developer is the man behind DaddyHackingTeam, the home of an upcoming future botnet. It is still in the development phase, but the website has also contained some of the source code of the leaked malware variants over the past few years.
DaddyL33T will not be a real hacker if he does not have an account on HackForums. This account is registered under DaddyPvP and most of his posts are asking for help or introducing their botnet.
Most people who want to be hackers on HackForums are harmless, but DaddyL33T seems to be skilled, at least enough for his botnet to work.
The person behind the hybrid botnet QBot-Gr1n IoT
Researcher at NewSky Security Ankit Anubhav has tracked DaddyL33T's botnet, apparently the modified version of the QBot botnet. On HackForums, DaddyL33T also asked some questions about QBot.
DaddyL33T asks about QBot on HackForum
The researcher said DaddyL33T's botnet uses a binary file that was used during infection from DaddyHackingTeam. Private chat with DaddyL33T via Skype, Anubhav said DaddyL33T admitted his botnet is trying to infect about 300 devices, a very small number compared to other IoT botnets.
Source code on DaddyHackingTeam
When analyzing the QBot model, Anubhav also found many similarities with the malware Gr1n IoT, also used to create IoT botnet. So it seems that DaddyL33t's botnet is just a copy.
DaddyL33T is a 13-year-old boy
This, he admitted in a private conversation with Anubhav. The lack of malware development experience and OpSec is obvious when Anubhav says he found a job application on the freelance job site, where DaddyL33T uses the same Skype address he used to advertise his botnet. In it, he also said that he is 13 years old, just as he confessed to Anubhv.
DaddyL33T's freelance job application
You should read it
- Microsoft has just taken down a huge botnet network
- Botnets can change CPU settings to increase mining performance
- WireX DDoS Botnet: tens of thousands of Android phones are hacked
- 10 typical malware types
- Hacker exploited three vulnerabilities in Microsoft Office to spread Zyklon malware
- What is Safe Malware? Why is it so dangerous?
- Can a VPN Fight Malware?
- What is Malware? What kind of attack is Malware?
May be interested
- Hacker exploited three vulnerabilities in Microsoft Office to spread Zyklon malwaresecurity researchers have discovered a botnet spread of malware through at least three new vulnerabilities published in microsoft office.
- The Gupteba botnet that infected 1 million Windows computers has just been taken down by Googleglopbeta is a dangerous type of malware with the ability to steal user information and cookies, mine virtual currency, deploy and operate proxy components... it usually targets both windows and device systems. iot devices.
- What is IoT Botnet Attack? How to Prevent It?there is no doubt about the danger of iot attacks, especially when multiple devices share the same network.
- Akamai detected the Fast Flux botnet with 14,000 IP addressesresearchers at akamai have discovered a botnet with more than 14,000 ip addresses used to spread malware, using smart technology called fast flux.
- What is botnet DDoS?as the number of iot devices continues to grow, fears of cyberattacks also increase. one of the main sources of attack is ddos botnets targeting unsecured iot devices.
- Instructions on how to write style letters on Skypeon skype, it is possible to change the font to other formats such as bold, italic or inline text with a very simple way.
- Skype shortcut helps to work faster when chattingwith skype shortcuts, users can fully experience more unique features on skype and faster operations when chatting with friends on skype.
- Microsoft dismantled the ZLoader botnet, naming key members as a deterrentmicrosoft has just announced that it has successfully dismantled the zloader botnet. it was this criminal botnet that exploited the xlm macro in excel to attack potential victims.
- How to use Skype Web in the browserskype already has a web-based version, which helps users chat or call skype calls quickly with friends without installing software.
- Skype interface changes help you increase the experienceskype chat software is now one of the popular messaging and video calling services with messenger and zalo. with some changes on skype will help users to use this application more effectively.