Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums.

You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today!

If you have any problems with the registration process or your account login, please contact us.

Post New Thread Reply

Register GFY Rules Calendar
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed.

 
Thread Tools
Old 05-02-2015, 02:20 PM   #1
crockett
in a van by the river
 
crockett's Avatar
 
Industry Role:
Join Date: May 2003
Posts: 76,806
direct mailer from yellsoft has had back door for 5 years

Unnoticed for years, malware turned Linux and BSD servers into spamming machines

These guys were selling anonymous spamming software but also leaked a pirated copy of their own software. In this pirated copy they had a black door which turned Linux and BSD servers into spam bots.

They were able to keep it going for 5 years with out getting caught until now.

A snippet from the article..

Quote:
The price of the software is $240, but interestingly enough, there is a link to a site offering a "cracked" version of DirectMailer. The developers explicitly say that they don't provide technical support for users of pirated versions of DirectMailer downloaded from that site or any other, but the fact that they provide a direct link is strange.

"Why would you want to show where to steal your software?" asks Leveille, and comments that it is this, and the facts that Yellsoft’s homepage seems to be hosted on the same server as Mumblehard’s backdoor and spammer C&C server and that the pirated DirectMailer and Mumblehard’s spammer share code what makes them suspect they are the same group.

The pirated DirectMailer copies contain the Mumblehard backdoor, and when users install them, they give the operators a backdoor to their servers, and allow them to send spam from and proxy traffic through them.

I wondered whether the original DirectMailer software contained the backdoor, too, but Leveille couldn't answer that question for me.

"We do not know if the paid-for version of DirectMailer also include the backdoor or not. We did not, and didn’t want to, buy software from Yellsoft," he noted. "If anyone has a paid copy they are willing to send us, we’d be glad to analyze it and confirm if the backdoor is present."

What's worrying, he says, is that the Mumblehard operators have been active for many years without disruption.
crockett is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-02-2015, 02:24 PM   #2
EddyTheDog
Just Doing My Own Thing
 
EddyTheDog's Avatar
 
Industry Role:
Join Date: Jan 2011
Location: London, Spain, New Zealand, GFY - Not Croydon...
Posts: 25,035
Quote:
Originally Posted by crockett View Post
Unnoticed for years, malware turned Linux and BSD servers into spamming machines

These guys were selling anonymous spamming software but also leaked a pirated copy of their own software. In this pirated copy they had a black door which turned Lexus and BSD servers into spam bots.

They were able to keep it going for 5 years with out getting caught until now.
I am going to use my physic powers - You have been looking at car sites today...

Maybe Toyota or wait, Lexus?....

Damn, I'm good...
EddyTheDog is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Old 05-02-2015, 02:34 PM   #3
MaDalton
I am Amazing Content!
 
MaDalton's Avatar
 
Industry Role:
Join Date: Feb 2004
Posts: 39,821
MaDalton is online now   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote
Post New Thread Reply
Go Back   GoFuckYourself.com - Adult Webmaster Forum > >

Bookmarks

Tags
copy, pirated, software, door, spam, bots, bsd, servers, lexus, caught, guys, selling, mailer, yellsoft, anonymous, spamming, direct, leaked, black



Advertising inquiries - marketing at gfy dot com

Contact Admin - Advertise - GFY Rules - Top

©2000-, AI Media Network Inc



Powered by vBulletin
Copyright © 2000- Jelsoft Enterprises Limited.