Home
Forums
New posts
Search forums
What's new
New posts
New profile posts
Latest activity
Members
Current visitors
New profile posts
Search profile posts
Log in
Register
What's new
Search
Search
Search titles only
By:
New posts
Search forums
Menu
Log in
Register
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Reply to thread
Home
Forums
CARDING & HACKING
HOSTING & BOTNET
Botnets. General concepts, classification, and monetization of botnets.
Message
<blockquote data-quote="Ghosthunter" data-source="post: 519" data-attributes="member: 6"><p><h4>The next truly interesting area is adware</h4><p>I must say right away that advar is all the software that shows or forces the user to click on the displayed ad. Don't confuse it with an autoclicker.</p><p></p><p>Advar, as you guessed, can work on its own. It doesn't need a botnet.</p><p></p><p>But we are also looking at business models that we can implement if we have a resource like a botnet at our disposal.</p><p></p><p>I will tell you about malware in a little more detail, since this direction (in conjunction with a couple of others) it seems quite promising to me.</p><p></p><p>Advar as such can be quite intelligent. Force the user to follow certain links, collecting marketing information about the user and, in the future, showing already targeted ads.</p><p></p><p>The one that the user is most likely to click, thereby increasing the conversion rate and, accordingly, sales.</p><p></p><p>By the way, quite a harmless thing.</p><p></p><p>The direction is very monetary, if you correctly build a strategy and technological base. In other words, for smart guys. And we are smart guys, so here's an example of how you can make good money on advertising and a botnet.</p><p></p><p>Remember what I said about the socks bot? Did you also say that it is in demand? So, the next level is not just providing a connection to the victim's machine for money, but spoofing DNS on this machine and showing us the ads we need.</p><p></p><p>No tinplate, just commerce. No need for ransomware, lokers, and other filth.</p><p></p><p>Believe me, you can earn no less here!</p><p></p><p>If your socks bot has a backconnect module that will allow us to infect and have active bots at the site where we will run our ads-the height of heights.</p><p></p><p>Thus, 5-10k bots give$ 10k per day on the farm alone.</p><p></p><p>It is clear that there is no stability here, but the fact is!</p><p></p><p>And this is only one vertical. Without chernukha. And how much more there is!</p><p></p><p>Of course, no one will sell you such software. You need to write for yourself and for yourself. For your specific tasks.</p><p></p><p>Well, since we are talking about the advertising direction, we will touch on advertising bots as such.</p><p></p><p>A non - trivial thing, in fact, is clicking and pageviews.</p><p></p><p>It is as old as the world and, in some places, even works and brings a couple of kopecks.</p><p></p><p>There are, however, some unique things: the guys got their own networks of ipv4 addresses, wrote scripts that mimic human behavior, and sent themselves ads for several cartoons of greenery a day (who cares, Google: Methbot).</p><p></p><p>There are many pitfalls, and you need to know the internal cuisine.</p><p></p><p>It's not enough to just fill up your views. There are a number of indicators that directly indicate fraud. The same CTR.</p><p></p><p>In theory, with the growth of views, the conversion rate should also grow in a conditional proportion.</p><p></p><p>And how can it grow if we chase dead souls? Such a partner will be immediately banned. In short, the subtleties dofiga. But if you know where to attach it, you can earn very good money.</p><p></p><p>I'll give you a sad example. There was such a veteran of the nastra runet. He implemented a similar scheme with servers.</p><p></p><p>I combined them into a cluster and rewound pageviews, having previously agreed with some agency there.</p><p></p><p>At a certain point, the agency got some kind of plug and they did not want to shoot.</p><p></p><p>He took and rewound views for tens of millions, like decided to take revenge.</p><p></p><p>As a result, they were accepted and extradited to the United States.</p><p></p><p>But that's not the moral. It's that you can find your own ways and earn money.</p><p></p><p>Who is interested, Google: nastra, Alexander Zhukov.</p><p></p><p>In general, do not forget that a botnet is a huge array of computing power. With DDoS, everything is clear.</p><p></p><p>But there are still a million other areas where you can use these capacities.</p><p></p><p>For example, write software for selecting seed words for an Ethereum wallet, combine the machines into a cluster, and put them to work.</p><p></p><p>Well, or any other brutus, whatever.</p><p></p><p>And, as a final option: you can always rent out or sell your botnet profitably if you couldn't / didn't want to / don't have time to study. It can be profitable. But still not desirable.</p><p></p><p>In general, such services should be used by imbeciles and incompetents. Why rent bots that have already been squeezed 100 times before you?</p><p></p><p>Also, think about it: would you rent out your car?) That's the same thing.</p><p></p><p>If we are just completely morons, and we have super little brains (or even not at all), then we can “search for other people's links/requests” in our logs.</p><p></p><p>You can do this. Why not, if so. We post a topic and wait for the same idiots.</p><p></p><p>Idiots apply and fire their requests, and then you work them out on your own.</p><p></p><p>But what if you're smart? Then you can develop your own unique software and just rent it out. What is called Malware as a Service in smart language.</p><p></p><p>A typical representative of this class is the previously mentioned GandCrab.</p><p></p><p>The essence of the approach is that you rent out your software or infrastructure for a fee. Sometimes it's both.</p><p></p><h4>Additional botnet monetization</h4><p>There are several directions in this regard.</p><p></p><h4>Expand either vertically or horizontally.</h4><p>Vertical - this is when you connect other functionality to your bot that was not originally planned and monetize it.</p><p>For example, the same SMOKE bot: you initially took a loader and sell downloads after you've wrung out everything yourself, and then you decide to also do ddos. You buy a separate module and start monetizing DDOS on your own.</p><p></p><p>Horizontal expansion is when you take as conditional partners a person who will process the resources that you have not used.</p><p>What does it mean? Let's say you are processing the logs you have collected on a stick. Don't touch any other requests. Take a person who works with Amazon as a partner and give them their request. You discuss what data it needs, cut it out of the log (all this, by the way, can be perfectly automated) and give it for testing.</p><p></p><p>It is necessary to calculate all the options in advance in case your main activity, which brings you profit, suddenly orders you to live for a long time tomorrow. In this regard, the bot should be relatively universal. Moreover, it is desirable to have several such partners, and preferably on a permanent basis. In the course of market research, I suggest that you look at what requests and in what quantity are redeemed on different forums. We study reviews, choose who we are interested in, estimate the approximate amount of material, and build bridges BEFORE starting.</p><p></p><p>They don't charge money for demand. Nothing prevents you from agreeing first, and then starting to produce results. Because if you already have the material on your hands, and you're just looking for somewhere to merge it, you have to ask yourself: am I doing everything right? Spoiler alert: Not all of them.</p><p></p><p>A small caveat regarding the sale of shares. An extremely important and not obvious point regarding the sale of your hard-earned shares from logs.</p><p></p><p>Let's assume that you are shedding normally, you have a bunch of bots and you are working them out for your requests. At the same time, you still have 98% of the untouched material.</p><p>It is understandable, it is simply not realistic to cover everything. And there's no point, really. What comes to mind in this situation? Right. Start selling your accounts.</p><p>You, without suspecting anything, go to a forum or telegram channel of some kind and start selling unclaimed akki. Only there is one small BUT. Having sold a conditional Bank of America, you may not know that on the same bot you have a fat PayPal or other service that you are actively hammering.</p><p>Do you have any idea what will happen next? The buyer will go to hammer out their request, the holder will realize that it is infected, take down the operating system, and you have lost the bot.</p><p></p><p>When you lose a bot through your own fault and as a result of your own work, this is one thing.</p><p></p><p>And when you were given a bot that could potentially bring in thousands of dollars, and you earned a measly 15 bucks for selling it, “this is a fiasco bro...".</p><p></p><p>I strongly recommend instilling “account cleanliness” in yourself . As long as you don't push the bot to the maximum, don't sell anything from it.</p><p></p><p>If you decide to sell akki, then sell exclusively from old bots, which you gutted as best you could to all your possible questions.</p><p></p><p>This is not a call to expand vertically in other directions. This is rather a small remark about the correct and PROFITABLE work with your material.</p><p></p><p>The ideal story is when the botnet has worked for some time (notional 4-5 months), you have merged all your logs and moved to another server.</p><p></p><p>After completing all the logs in advance, you can sell them out. We keep the logs from the new server for ourselves. Repeat the cycle.</p></blockquote><p></p>
[QUOTE="Ghosthunter, post: 519, member: 6"] [HEADING=3]The next truly interesting area is adware[/HEADING] I must say right away that advar is all the software that shows or forces the user to click on the displayed ad. Don't confuse it with an autoclicker. Advar, as you guessed, can work on its own. It doesn't need a botnet. But we are also looking at business models that we can implement if we have a resource like a botnet at our disposal. I will tell you about malware in a little more detail, since this direction (in conjunction with a couple of others) it seems quite promising to me. Advar as such can be quite intelligent. Force the user to follow certain links, collecting marketing information about the user and, in the future, showing already targeted ads. The one that the user is most likely to click, thereby increasing the conversion rate and, accordingly, sales. By the way, quite a harmless thing. The direction is very monetary, if you correctly build a strategy and technological base. In other words, for smart guys. And we are smart guys, so here's an example of how you can make good money on advertising and a botnet. Remember what I said about the socks bot? Did you also say that it is in demand? So, the next level is not just providing a connection to the victim's machine for money, but spoofing DNS on this machine and showing us the ads we need. No tinplate, just commerce. No need for ransomware, lokers, and other filth. Believe me, you can earn no less here! If your socks bot has a backconnect module that will allow us to infect and have active bots at the site where we will run our ads-the height of heights. Thus, 5-10k bots give$ 10k per day on the farm alone. It is clear that there is no stability here, but the fact is! And this is only one vertical. Without chernukha. And how much more there is! Of course, no one will sell you such software. You need to write for yourself and for yourself. For your specific tasks. Well, since we are talking about the advertising direction, we will touch on advertising bots as such. A non - trivial thing, in fact, is clicking and pageviews. It is as old as the world and, in some places, even works and brings a couple of kopecks. There are, however, some unique things: the guys got their own networks of ipv4 addresses, wrote scripts that mimic human behavior, and sent themselves ads for several cartoons of greenery a day (who cares, Google: Methbot). There are many pitfalls, and you need to know the internal cuisine. It's not enough to just fill up your views. There are a number of indicators that directly indicate fraud. The same CTR. In theory, with the growth of views, the conversion rate should also grow in a conditional proportion. And how can it grow if we chase dead souls? Such a partner will be immediately banned. In short, the subtleties dofiga. But if you know where to attach it, you can earn very good money. I'll give you a sad example. There was such a veteran of the nastra runet. He implemented a similar scheme with servers. I combined them into a cluster and rewound pageviews, having previously agreed with some agency there. At a certain point, the agency got some kind of plug and they did not want to shoot. He took and rewound views for tens of millions, like decided to take revenge. As a result, they were accepted and extradited to the United States. But that's not the moral. It's that you can find your own ways and earn money. Who is interested, Google: nastra, Alexander Zhukov. In general, do not forget that a botnet is a huge array of computing power. With DDoS, everything is clear. But there are still a million other areas where you can use these capacities. For example, write software for selecting seed words for an Ethereum wallet, combine the machines into a cluster, and put them to work. Well, or any other brutus, whatever. And, as a final option: you can always rent out or sell your botnet profitably if you couldn't / didn't want to / don't have time to study. It can be profitable. But still not desirable. In general, such services should be used by imbeciles and incompetents. Why rent bots that have already been squeezed 100 times before you? Also, think about it: would you rent out your car?) That's the same thing. If we are just completely morons, and we have super little brains (or even not at all), then we can “search for other people's links/requests” in our logs. You can do this. Why not, if so. We post a topic and wait for the same idiots. Idiots apply and fire their requests, and then you work them out on your own. But what if you're smart? Then you can develop your own unique software and just rent it out. What is called Malware as a Service in smart language. A typical representative of this class is the previously mentioned GandCrab. The essence of the approach is that you rent out your software or infrastructure for a fee. Sometimes it's both. [HEADING=3]Additional botnet monetization[/HEADING] There are several directions in this regard. [HEADING=3]Expand either vertically or horizontally.[/HEADING] Vertical - this is when you connect other functionality to your bot that was not originally planned and monetize it. For example, the same SMOKE bot: you initially took a loader and sell downloads after you've wrung out everything yourself, and then you decide to also do ddos. You buy a separate module and start monetizing DDOS on your own. Horizontal expansion is when you take as conditional partners a person who will process the resources that you have not used. What does it mean? Let's say you are processing the logs you have collected on a stick. Don't touch any other requests. Take a person who works with Amazon as a partner and give them their request. You discuss what data it needs, cut it out of the log (all this, by the way, can be perfectly automated) and give it for testing. It is necessary to calculate all the options in advance in case your main activity, which brings you profit, suddenly orders you to live for a long time tomorrow. In this regard, the bot should be relatively universal. Moreover, it is desirable to have several such partners, and preferably on a permanent basis. In the course of market research, I suggest that you look at what requests and in what quantity are redeemed on different forums. We study reviews, choose who we are interested in, estimate the approximate amount of material, and build bridges BEFORE starting. They don't charge money for demand. Nothing prevents you from agreeing first, and then starting to produce results. Because if you already have the material on your hands, and you're just looking for somewhere to merge it, you have to ask yourself: am I doing everything right? Spoiler alert: Not all of them. A small caveat regarding the sale of shares. An extremely important and not obvious point regarding the sale of your hard-earned shares from logs. Let's assume that you are shedding normally, you have a bunch of bots and you are working them out for your requests. At the same time, you still have 98% of the untouched material. It is understandable, it is simply not realistic to cover everything. And there's no point, really. What comes to mind in this situation? Right. Start selling your accounts. You, without suspecting anything, go to a forum or telegram channel of some kind and start selling unclaimed akki. Only there is one small BUT. Having sold a conditional Bank of America, you may not know that on the same bot you have a fat PayPal or other service that you are actively hammering. Do you have any idea what will happen next? The buyer will go to hammer out their request, the holder will realize that it is infected, take down the operating system, and you have lost the bot. When you lose a bot through your own fault and as a result of your own work, this is one thing. And when you were given a bot that could potentially bring in thousands of dollars, and you earned a measly 15 bucks for selling it, “this is a fiasco bro...". I strongly recommend instilling “account cleanliness” in yourself . As long as you don't push the bot to the maximum, don't sell anything from it. If you decide to sell akki, then sell exclusively from old bots, which you gutted as best you could to all your possible questions. This is not a call to expand vertically in other directions. This is rather a small remark about the correct and PROFITABLE work with your material. The ideal story is when the botnet has worked for some time (notional 4-5 months), you have merged all your logs and moved to another server. After completing all the logs in advance, you can sell them out. We keep the logs from the new server for ourselves. Repeat the cycle. [/QUOTE]
Name
Verification
Post reply
Home
Forums
CARDING & HACKING
HOSTING & BOTNET
Botnets. General concepts, classification, and monetization of botnets.
Top