• Earn real money by being active: Hello Guest, earn real money by simply being active on the forum — post quality content, get reactions, and help the community. Once you reach the minimum credit amount, you’ll be able to withdraw your balance directly. Learn how it works.

Botnet Pony 1.9 --Leaked for TF

Status
Not open for further replies.

sQuo

~ KillmeMories ~
Shadow
User
Joined
Oct 16, 2011
Messages
5,851
Reputation
0
Reaction score
22,904
Points
688
Credits
0
‎13 Years of Service‎
24%
72930463dad896c4a2d4b522d5a79216.png


9d98c23bb2ed7ba6d79eba1279d62f0a.png


ee1ace3c00d7584d4a1e9d7cd8d6155d.png


ac6a7c0d81d77b8230b2086ace5864b8.jpg


19c3fa4deeaf85f80afae5b69587321a.png


Purpose and Objectives of this project

-Collecting FTP / HTTP passwords from 95 + popular FTP-client and Web-browser from infected computers.

-Collecting E-mail password (POP3, IMAP, SMTP).

-Collecting signing certificates of executable files and drivers.

-Collect RDP(Remote Desktop Connection) passwords.

-Invisible to the user's application.

-Minimum amount of work and time grabber on the infected computer.

Collect passwords from your computer and send them to c&c panel.

Works on all versions of Windows, from Win98 to Windows 8(including windows server) - x86 and x64.

Implemented instantaneous decoding for saved passwords for the following programs:

System InfoFAR Manager

Total Commander

WS_FTP

CuteFTP

FlashFXP

FileZilla

FTP Commander

BulletProof FTP

SmartFTP

TurboFTP

FFFTP

CoffeeCup FTP / Sitemapper

CoreFTP

FTP Explorer

Frigate3 FTP

SecureFX

UltraFXP

FTPRush

WebSitePublisher

BitKinex

ExpanDrive

ClassicFTP

Fling

SoftX

Directory Opus

FreeFTP / DirectFTP

LeapFTP

WinSCP

32bit FTP

NetDrive

WebDrive

FTP Control

Opera

WiseFTP

FTP Voyager

Firefox

FireFTP

SeaMonkey

Flock

Mozilla

LeechFTP

Odin Secure FTP Expert

WinFTP

FTP Surfer

FTPGetter

ALFTP

Internet Explorer

Dreamweaver

DeluxeFTP

Google Chrome

Chromium / SRWare Iron

ChromePlus

Bromium (Yandex Chrome)

Nichrome

Comodo Dragon

RockMelt

K-Meleon

Epic

Staff-FTP

AceFTP

Global Downloader

FreshFTP

BlazeFTP

NETFile

GoFTP

3D-FTP

Easy FTP

Xftp

FTP Now

Robo-FTP

LinasFTP

Cyberduck

Putty

Notepad + +

CoffeeCup Visual Site Designer

FTPShell

FTPInfo

NexusFile

FastStone Browser

CoolNovo

WinZip

Yandex.Internet

MyFTP

sherrod FTP

NovaFTP

Windows Mail

Windows Live Mail

Becky!

Pocomail

IncrediMail

The Bat!

Outlook

Thunderbird

FastTrack
Builder coded in delphi XE2, stub coded in asm(32 kb compressed).


Download: Pony 1.9.rar (panel + builder + stub source)


[HIDE-THANKS]
This link is hidden for visitors. Please Log in or register now.


Mirror:

This link is hidden for visitors. Please Log in or register now.
[/HIDE-THANKS]

Credits: Unic0de

server.exe

RESULTS: 16/35

AVG Free - Virus found Win32/Heur

ArcaVir -

Avast 5 - Win32:Agent-AOOD [Trj]

AntiVir (Avira) - TR/Crypt.XPACK.Gen3

BitDefender - Gen:Variant.Kazy.61489

VirusBuster -

Clam -

COMODO -

Dr.Web - Trojan.PWS.Stealer.1724

eTrust-Vet -

F-PROT -

F-Secure - Gen:Variant.Kazy.61489

G Data - Gen:Variant.Kazy.61489, Win32:Agent-AOOD [Trj]

IKARUS - Trojan-PWS.Win32.Fareit

Kaspersky - HEUR:Trojan.Win32.Generic

McAfee -

MS Essentials -

ESET NOD32 - Trojan.Win32/PSW.Fareit.A

Norman -

Norton - Downloader.Ponik

Panda - Malware

A-Squared - Trojan-PWS.Win32.Fareit!IK

Quick Heal -

Solo -

Sophos -

Trend Micro - BKDR_PONY.SM

VBA32 -

Vexira -

Zoner AntiVirus -

Ad-Aware -

BullGuard - Gen:Variant.Kazy.61489

Immunet - Gen:Variant.Kazy.61489

K7 Ultimate -

NANO -

VIPRE -

File Name Pony.exe

File Size: 34816

File MD5: 0ca0aa324446ffada395d644d9bfbe48

File SHA1: 3c8ea0ccbb10390c164bc2ab00370e145a3d53be

Check Time: 2012-12-23 13:38:30

Scan report generated by


This link is hidden for visitors. Please Log in or register now.


 
Last edited by a moderator:
Re: Pony 1.9 --Leaked for TF

nice bot stealer, we must read or have tuto to get it working, nice share HUM

 
Please note, if you want to make a deal with this user, that it is blocked.
Re: Pony 1.9 --Leaked for TF

Stiller is good, but as I understand it requires a VDS

 
Please note, if you want to make a deal with this user, that it is blocked.
Re: Pony 1.9 --Leaked for TF

Please i need host/VPS that comes with GMP to host this Pony 1.9, does anyone have an idea or sell?

This shit requires GMP and all CP i am using don't have GMP...

I will be glad if someone helps..

Thanks All

 
Re: Pony 1.9 --Leaked for TF

Linux, Ubuntu server setup(VPS/VDS):

1) Connect to the server using putty(SSH Client).

2) At the command prompt, execute the following commands:

  • apt-get update
  • apt-get install php5-curl
  • apt-get install php5-gmp
  • apt-get install php5-sqlite
  • apt-get install php5-geoip
  • apt-get install php5-mcrypt
  • /etc/init.d/apache2 restart

Is a set of commands to install modules to PHP for normal operation of the control panel. If you have problems write in this topic, will jointly tackle.

PS: Who can't configure the server yourself, write Your contacts in PM and I'll help You.

 
Last edited by a moderator:
Status
Not open for further replies.
Back
Top