SU Trojan Ver2.00
ccfdf2b6c2f13ffa42df7c5a8a201728This is a backdoor program which can be accessed remotely as telnetd. TDM can not use telnet, rlogin, and ftp command, but this backdoor can use such command. However, you have to specify the correctry return code in the telnet client. If you can not change the return code, the "CR" code will be added and sent, so you type";" at the tail of your command.
6c48cf7ce66d9ec42309698d99d2392bThis is a backdoor program which can be accessed remotely as telnetd. You can login without username and password to the host which is installed this program. This program also can use as CGI program if you send the compiled binary and change the permittion to 755, you can use the UNIX shell command on the ISP that doesn't accept the shell account.
f423c69888030a2c67c99d7899bfc431This is the UDP based backdoor which supports the UNIX shell command. Generally the UDP packet is not checked by the poor firewalls and packet screening programs, this program is useful in such environment.
3d5f29691a2cf185943590adff45326bThis is the simple UDP port scanner based on the ICMP.
69ed992b74f46391cddee89b0ce8dec3The general log wipers write the null entry to the logfiles, so admin can check the wiped traces such as the wiped. This log wiper wipes the log entry of wtmp, wtmpx, utmp, utmpx, lastlog without such wiped traces. This utility can also reconstruct the zapped logs, and remove the null entry. The usage is same as zap.
b9c39abdac3cb47553eb3d97a1806968This utility replace the entry of the unix logfile of /var/adm/utmp,utmpx
9edc669cd8b96723b0b1f5788d904e42This is the general log wiper for Solaris, SunOS, IRIX, Linux, FreeBSD.
1149190fc8363dc407e21ed308509897If you install the sniffer on the SunOS, admin can know that the sniffer is installed by the ifconfig command. This program fakes the ifconfig command, the PROMISC message will not be shown.
d0295f03767b9903bc2275360e4f358eIf you want to hide your daemon or background process, this program is useful. This program fakes the ps and your processes will not be listed.
c0a268f15eab5cd645e8286b05cf0dbbThis utility searchs the joe-accounts for specified host using ftp bluteforce attack based on the userlist file. This utility also can attack by using the fixed password and username+string.
8a01253fcd98ffb4b7876fcbec7b64e3