Section: .. / trojans /
| /// File Name: |
GMCreator_v0.4.zip |
Description:
|
Godmessage Creator allows you to implement the Godmessage IV activeX attack with any binary you supply.
| | Author: | Taint | | Changes: | Dynamically creates Godmessage from supplied html file, and creates a second RC4 encrypted / Hex encoded Godmessage, increased max trojan size to 34500 bytes. | | File Size: | 11274 | | Last Modified: | Oct 19 14:25:15 2000 |
| MD5 Checksum: | c963a5db27b47a34e3329e6537bfb20b |
|
| /// File Name: |
GMCreator-v0.2.zip |
Description:
|
Godmessage Creator allows you to implement the Godmessage IV activeX attack with any binary you supply.
| | Author: | 6 Inch Taint | | Changes: | Max file size increased to 26000 bytes, Optimized godmessage code, remove unnessisary chars to make file smaller and raise onz.exe size limit, the ability to dynamically create godmessage from user supplied html file. | | File Size: | 28073 | | Last Modified: | Oct 15 14:09:55 2000 |
| MD5 Checksum: | e23535c5c8c2e6c1678548d01e045248 |
|
| /// File Name: |
GMCreator.zip |
Description:
|
Godmessage Creator allows you to implement the Godmessage IV activeX attack with any binary you supply.
| | Author: | 6 Inch Taint | | File Size: | 27423 | | Last Modified: | Oct 11 03:03:59 2000 |
| MD5 Checksum: | 4a61836093618391c15496b0b2221b61 |
|
| /// File Name: |
trojan_list.txt |
Description:
|
This is a list of the ports which trojans run on. Updated Aug 2000, lists 350 trojans and thier default port. Newest version of this list available here.
| | Author: | Ofir Arkin | | Homepage: | http://www.sys-security.com | | File Size: | 8748 | | Last Modified: | Sep 13 13:51:27 2000 |
| MD5 Checksum: | 84b0310ef73e1ace0c127207b8f332c9 |
|
| /// File Name: |
noob_3.01.zip |
Description:
|
Noob 3.01 is a trojan which uses an IRC connection to control it, therefore bypassing firewalls. Uses ActiveX. Victim must be running Internet Explorer 4.0 SP1 or 5.0.
| | Author: | Shadow | | Changes: | Bug fixes. | | File Size: | 19829 | | Last Modified: | Aug 11 16:26:44 2000 |
| MD5 Checksum: | 34c8e4d68750ca30323a59e68864e9bb |
|
| /// File Name: |
Amanda20.zip |
Description:
|
Amanda is a Windows remote control trojan which features Hide / Show Desktop icons, Start Button, Clock, Task Bar, Open / Close Cd-Rom, Turn On / Off Screen, Take A Screen Shot, Disable / Enable CTRL + ALT + DEL, Restart, Shutdown, Crash & Destroy System, Gen Blue Screens, Make The Mouse Go Nuts, Upload / Run Files, KeyLogger, List / End All Running Apps, Get All Cached Passwords, Chat Client / Server, and much more.
| | Author: | SKiDKiD | | File Size: | 49370 | | Last Modified: | Aug 8 19:39:22 2000 |
| MD5 Checksum: | 88c3172388b0edb0619f4b9419a81390 |
|
| /// File Name: |
TFAK4.zip |
Description:
|
TFAK v4.0 is a client for 22 remote access trojans, and removes 366 remote access trojans and 9 file joiners. This is the first and only trojan scanner which is able to find new, unknown trojans.
| | Author: | SnakeByte | | Homepage: | http://www.kryptocrew.de/snakebyte/ | | Changes: | Heuristics improved, monitors new autostart entries, own file is checked for changes by viruses or trojans, some bugs are fixed, and faster scanning. | | File Size: | 2044928 | | Last Modified: | Aug 6 01:45:38 2000 |
| MD5 Checksum: | 92c6b4a555ccf8f3608cb2c82215a19e |
|
| /// File Name: |
00Sub7_20.zip |
Description:
|
00[Sub]7 - The Ultimate SubSeven Logging Tool. Sets up a fake sub7 server on the default port which can send all sorts of false information to the client.
| | Author: | Jeff Capes | | Homepage: | http://www.rendo.dekooi.nl/~jeff/00Sub7.htm | | File Size: | 97500 | | Last Modified: | Jul 29 01:02:29 2000 |
| MD5 Checksum: | 5324a0181f048fce5a956689dfaa3ab1 |
|
| /// File Name: |
Cain20.EXE |
Description:
|
Cain and Abel is a password recovery tool for Windows 95/98 operating systems. It allows easy recovery of Logon passwords, Share passwords (local and remote), Screen Saver passwords, Access Database passwords, DialUp passwords, Link passwords and any other application defined password cached in your system or in external .PWL and registry files. SMB passwords (MD4 hashed passwords) can also be recovered with a powerful distributed SMB sniffer. Warning: McAffee falsely detects this as a virus because it is free and cracks passwords.
| | Author: | Mao | | Homepage: | http://www.oxid.it | | File Size: | 676514 | | Last Modified: | Jul 12 19:39:05 2000 |
| MD5 Checksum: | 579afc4aad3dcef009f6296b7204843a |
|
| /// File Name: |
LIFE_STAGES.TXT |
Description:
|
Life Stages worm .vbs source code. Sets off virus scanners.
| | File Size: | 27446 | | Last Modified: | Jun 20 14:26:56 2000 |
| MD5 Checksum: | 781c1346acaadb0a9f334ddb9bc2a4e0 |
|
| /// File Name: |
tlfaq.htm |
Description:
|
FAQ on removing many different trojans. Updated frequently.
| | Author: | int_13h. | | Homepage: | http://www.TLSecurity.net | | File Size: | 133486 | | Last Modified: | May 15 16:25:09 2000 |
| MD5 Checksum: | 35f0e341307ff5f0f9e77b61902fd98c |
|
| /// File Name: |
TFAK3.zip |
Description:
|
TFAK v3.0 is a client for 22 remote access trojans, and removes 257 remote access trojans and 9 file joiners. This is the first and only trojan scanner which is able to find new, unknown trojans.
| | Author: | SnakeByte | | Homepage: | http://www.kryptocrew.de/snakebyte/ | | Changes: | Improved heuristics, the ability to scan entire folders, added the option to edit the autostarted files, automatic autostart file monitoring. | | File Size: | 2011804 | | Last Modified: | Apr 27 18:49:07 2000 |
| MD5 Checksum: | 7f3f7ab292a66e1481c443ed1776960a |
|
| /// File Name: |
chupacabra.zip |
Description:
|
chupacabra is a remote access trojan created by Dark Side Industries. The trojan has the common remote access trojan fuctions and also a nice design.
| | Author: | Dark Side Industries | | Homepage: | http://darks1de.cjb.net | | File Size: | 122749 | | Last Modified: | Apr 5 16:04:00 2000 |
| MD5 Checksum: | dacb2ee4c03496eb8123fd65ad448e61 |
|
| /// File Name: |
fatalerr2.zip |
Description:
|
Fatal Network Error Trojan - This trojan Outputs a message box to the screen saying that a fatal network error has occoured and prompts for username and password. Writes this info to c:\os32779.sys in plain text.
| | Author: | ManiacX | | Homepage: | http://come.to/phreak.in.the.uk | | File Size: | 89891 | | Last Modified: | Apr 5 16:04:00 2000 |
| MD5 Checksum: | dcce3142528dd714dea1bcefe136b0b4 |
|
| /// File Name: |
Trojans213.zip |
Description:
|
Trojans213.zip is a list of 213 remote access windows trojans, with the default port numbers they use. Also contains a list formatted for use with superscan 2.0*.
| | Author: | Evil_dead | | File Size: | 4490 | | Last Modified: | Apr 5 16:03:00 2000 |
| MD5 Checksum: | 96014206153b8dbdc35ee54eff7a02d5 |
|
| /// File Name: |
TFAK.zip |
Description:
|
TFAK v2.0 is a client for 19 remote access trojans, and removes 141 remote access trojans. This is the first and only trojan scanner which is able to find new, unknown trojans.
| | Author: | SnakeByte | | Homepage: | http://www.coderz.net/Snakebyte/progs/ | | File Size: | 2459765 | | Last Modified: | Apr 3 22:33:22 2000 |
| MD5 Checksum: | aef021d400f3a1c540fa79b6550b10ba |
|
| /// File Name: |
wpack1.2b.zip |
Description:
|
The WC Remote Administration Tool (v1.2b) is a Windows remote control trojan coded in Delphi. The client is in C and runs on unix. Includes a tool (LookItUp.c) to test a host for infection.
| | Author: | Wildcoyote | | File Size: | 176635 | | Last Modified: | Feb 28 19:23:46 2000 |
| MD5 Checksum: | 1efe37f4496c1c76908e47c2d788d1e1 |
|
| /// File Name: |
Le_Guardien.zip |
Description:
|
Le Guardian is a new Windows trojan written in VB6 with many remote control functions. Uses TCP port 1001 for communication.
| | Author: | Gilles Houssar | | File Size: | 1191016 | | Last Modified: | Feb 28 18:50:32 2000 |
| MD5 Checksum: | fd1cb5bec42dbeb289c73b6cc0a121aa |
|
| /// File Name: |
nb16_p04.zip |
Description:
|
NetBus 1.6 (Patch 4) - Patched to avoid detection by Spider, Drweb, Avp, and Norton Antivirus.
| | Homepage: | http://infected.ilm.net:8100/new.htm | | File Size: | 527689 | | Last Modified: | Feb 25 16:41:40 2000 |
| MD5 Checksum: | 4af8cd7eac1358219d00e5a149e5c606 |
|
| /// File Name: |
bo120p08.zip |
Description:
|
Back Oriface 1.20 (Patch 8) - Patched to avoid detection by Drweb, Avp, and Norton Antivirus.
| | Homepage: | http://infected.ilm.net:8100/new.htm | | File Size: | 285897 | | Last Modified: | Feb 25 16:40:43 2000 |
| MD5 Checksum: | b5e3df5847bca6adc3beb1896d113ac2 |
|
| /// File Name: |
icqtrp02.zip |
Description:
|
ICQ trojan - Patched to avoid detection by Drweb, Avp, and Norton Antivirus.
| | Homepage: | http://infected.ilm.net:8100/new.htm | | File Size: | 38317 | | Last Modified: | Feb 25 16:39:58 2000 |
| MD5 Checksum: | 14c53b5198dccb1c2188b00a4653f94a |
|
| /// File Name: |
gf_p02.zip |
Description:
|
Girlfriend remote control trojan - Patched to avoid detection by Drweb, Avp, and Norton Antivirus.
| | Homepage: | http://infected.ilm.net:8100/new.htm | | File Size: | 391933 | | Last Modified: | Feb 25 16:38:27 2000 |
| MD5 Checksum: | b2c5762daecacff4759b06dfb4324ab5 |
|
| /// File Name: |
noob.zip |
Description:
|
Unavailable.
| | File Size: | 8723 | | Last Modified: | Feb 22 19:19:24 2000 |
| MD5 Checksum: | 205194e41df710599d3899f2e86b4d52 |
|
| /// File Name: |
softwarst.exe |
Description:
|
Softwar "Shadow Thief" is a Win 9X remote control trojan. The server is coded in pure ASM and is only 8k! Has over 30 features. Current AV products do not pick it up. Screenshots here.
| | Author: | True Real | | Homepage: | http://www.truereal.com/security/softwar.html | | File Size: | 357738 | | Last Modified: | Jan 25 14:43:59 2000 |
| MD5 Checksum: | bfb31b6125d5031cc5839b92a931d37c |
|
| /// File Name: |
Hackyou.tgz |
Description:
|
Utility to send a trojan to any unpatched IIS 4.0 system by exploiting a buffer overflow. (Without SP6). Exploit by Dark Spyrit. Trojan by NedoDarkseed
| | File Size: | 2586103 | | Last Modified: | Jan 21 18:50:48 2000 |
| MD5 Checksum: | 0d5ad1a4e58c9d901f2e96ace9bcbf53 |
|
|
|
|
|