Botnet manual

Father

Professional
Messages
2,601
Reputation
4
Reaction score
633
Points
113
A botnet is always tailored to the topic. You should never set up a botnet if you don't know what you need it for. Of course, you can say that in fact you will figure it out, because there will be a bank there. accounts, payments, cards and much more, and this can always be used. But the truth is that a botnet requires financial injections on a daily basis (we'll talk about them below), and every day of downtime - financial losses and in the future the collapse of the entire botnet. Therefore, before you start organizing a botnet, save money and buy accounts from logs. It will be a little more expensive, but it will save you tons of time and money.

Let's say it will be PayPal + VNC. You found the one who poured you a stick, bought some accounts, successfully merged them, and with the proceeds decided to set up a botnet so as not to depend on the seller. But do not rush, find 3-5 sellers, and buy these accounts from them, see the traffic, calculate what data you need for a successful bay. It may be worth screwing on some kind of injection so that the permeability of the bays increases. Structure all this information, it will come in handy in the future.
And only when you are sure that these accounts bring you the desired income - then you can think about raising a botnet.

Money
As I said above, the botnet eats money every day, so calculate everything, multiply by 2, and you can start organizing. But besides money, a botnet eats up a lot of time, and even if you are ready to devote 16 hours a day to it, this will still not be enough. Since a botnet is a whole system, you depend on many people (cryptors, transfers, hosters, coders, etc.), they all have a different daily routine, and it is not always possible to get along with everyone on the same day, so often per day you will do only 20-30% of what you planned.
In this regard, calculate in advance how much money you need for a normal life per month, this amount should be postponed in advance, since the first month you will only suffer and work on the botnet, so you will hardly have time to do other work, but you have to live on something.

Here is a sample list of expenses that await you:
  1. Trojan - Buying a Trojan, look for multiple options at once, despite even the laudatory reviews, always keep multiple options.
  2. Crypt - it's better to find 3-4 people right away, with different time zones, who will end up online for you 24/7. Do not rush to take a subscription, since you will not need it for the first couple of months - there will be no stable work. Stability will appear after 2-4 months of owning a botnet.
  3. Traffers - here it is also better to have 2-3-5 people, since traffic flows are often busy, and idle time is a waste of money and time.
  4. Bundles (exploits) - now (at the time of this writing) this case is very tight, but it's better to look for a couple of people anyway. For the first time, it is always better to rent by the day, since you cannot redeem stable traffic flows, and you don't need to waste money.
  5. Servers (hoster) - it all depends on the Trojan itself, what it needs, and on reliability. You should not look for the one that is cheaper, you should look for those who are the longest in business and the most stable. It is better to overpay a couple of hundred than to wonder why the server is down and you are losing money.
These are the main parameters and cost items that you face.

Now I will try to give some tips that you should consider right away before buying everything.
  • First, since you bought accounts from logs, and if you followed my advice and took these accounts from several sellers, then start with these sellers. Find out who hosts, who gets traffic, what triple they use, and so on. Any information is helpful. Start collecting lists, reading forum reviews, and monitoring the market. On average, this takes a week and a half until you collect everything into one normal list. Do not rush to buy everything, while you just study, and knock people on toads, and ask what and how. For example, for traffic - what are the flows, the origin of the traffic, the minimum salary, etc.
A little life hack while collecting everything - follow the Contact List, which of the added people is on the network when. Of course, you can just ask a person directly, but he can say one thing, but in fact it turns out that his grandmother is sick, etc., so there is no promised online. And so, just observe and draw conclusions.
[*]Second, when you've collected everything, you can't wait to start. But don't be in a hurry. The second stage, when you have collected the contacts of all of the above, found several three, etc. - you should consider additional monetization. Ideally, find a partner in the same country in which you work. For example, find someone who can handle the bank. accounts, discuss what data he needs, etc. There should always be a backup plan in case your main theme comes up. If there are several such partners, you are better off.
[*]Third - and now you seem to have found everything, and are ready to buy, but again do not rush. Now you have the most dreary stage, which everyone forgets about. Remember that I wrote above that all expenses must be multiplied by 2? Here's why: Before buying, start testing Trojans.
[/LIST]

For example, you have chosen a list of 3 Trojans, now you need to decide which one suits you best. What to test for? A short list from me:
  1. Work on all OS. Check how the Trojan behaves and taps on XP, Win2003, Win7, Win8, Win10. How it behaves on x32 and x64. If the Trojan does not work on virtual machines, buy Dedicated Servers. Doesn't work on Dedicated computers (and there are some) - buy a laptop and test on it.
  2. Working with browsers. Likewise, test how it behaves in all browsers on all operating systems. Yes, this is hemorrhoids, but it is better to do everything “on the shore” than to throw money and then be disappointed. Moreover, you do not need to listen to the reviews and assurances of the author, you just need to test.
  3. The work of all modules, if there is VNC - test it, also on all OS. There is a data grabber from some software - install this software and check.

The checks will take about a week - for one Trojan (and I told you, save money for a month of your life, since these tests eat up a lot of time). If you have a partner, let's test him, but not instead of you, but in parallel. One head it's good, but two better. Maybe he will have some bugs that you did not notice.
It will not be superfluous to hit the animals you are testing with the clients and talk to them about what bugs they noticed, what nuances there are.
After you have tested everything, we proceed to the second stage of the test.

Second phase:
If the animal works confidently and meets all the stated points, you should definitely drive it on a real traffic, and with a real crypt. That is, you pay for the bundle for a day, buy a crypt .exe (after the crypt, be sure to test what the Trojan pushes, and only then put it on load). This will check both cryptors and traffic.
What are we testing? Knock off! Many people who bought triplets think that if a link breaks 10%, then 100k of traffic is transferred to it - they will receive 10k downloads.
The reality is that, on average, a Trojan knocks out only 35-50 percent of the time. That is, from 100k traffic with 10 percent breakout, you will get a maximum of 5k bots, and this is a very good number.
Having looked in advance on the pitch, you can predict what awaits you in the future, and how many bots you can count on. Also here you should test the survivability, do not rush to part with the money for the Trojan until you see how many bots that have knocked out are left after 72 hours. This is important, because even with good feedback, the bots may not survive at all.
And so you will have to test each animal, and since often you will have to pay not only for traffic, but also for crypts, and most importantly - for the server on which the test version of the animal will be - then the money will fly away only in this way. But after a month of tests, you will have an idea of what awaits you and what you can count on.

Some tips / hints:
  1. If the author of the animal refuses the tests and refers to the reviews, send him in the forest. Reviews don't mean a damn thing until you feel it all yourself.
  2. The average feedback for today is 35-40%, anything higher is already a really good result.
  3. Do not rush to buy mega-privat for mega-money, even if a person with a reputation recommends it to you. All products that will fit 90% of carders in one way or another are sold on forums. If you need something specific, it is developed from scratch.
  4. Always do the test after crypt. Even if a person has been crying for you 10-20-30 times already. One of his mistakes - and a lot of money down the drain.

Ready botnet
So, the tests are done, the right Trojan is found, the servers are paid for, the downloads are dripping, but still not so fabulous. Now I will tell you about a few more nuances that you will have to face.
  1. Fresh logs. When you buy accounts from a seller, then of course you are asking for an inactive account so that the holder does not have time to burn anything. In the case of your botnet, all your accounts will be active, since they just came in the logs. Be sure to take this into account, and if inactive accounts are important to you, then it is better to continue buying them, and do not rely on the botnet too much.
  2. Injections. I have repeatedly come across the fact that for some reason newbies want to immediately buy a bunch of injections literally FOR EVERYTHING. Are there injections on ebey? Great, let's put it on! And do not care that ebey for example the fuck is not needed. Remember that in addition to the fact that each injection needs to be tested many times before being put into a botnet, it also needs to be monitored. Since the incorrect operation of the injection can bury a bunch of bots. Therefore, put only those injections that you really need. And always (at least once a week) test them on virtual machines / dediks (RDPs). So that they constantly work as they should.
  3. Selling accounts from a botnet. It is not uncommon for two partners to launch a botnet, and one, either out of boredom or in need of money "for beer", starts selling accounts from logs on forums. Like - we still have a bunch of logs, and we don’t use 80% of the accounts, so why waste, let’s sell them, and I’ll use the money for traffic. The logic takes place, just keep in mind that let's say you sold some wellsfargo from the logs, and on the same bot there could be a fat paypal account on which you work. And so the buyer of wells began to stir up something with the account, the holder fired it, realizes that he is infected, and changes passwords everywhere, or rearranges the system, and that's it! The bot is dead! You earned $ 5 from the sale of your account, but you lost the account from which you could have earned $ 500. Therefore, if you decide to sell accounts from logs in the future, then do it only from old bots that you no longer need.
  4. No matter how stable your botnet works, always look for new products . Of course, you shouldn't do this right after the purchase, but after six months of work - think about another product, and start looking for options. Nothing lasts forever under the moon, and the author of your animal may disappear (put, throw, swell). Ideally, allocate funds to develop your product so that only you have it. On average, it takes 4-5 months to develop a product, by 3-5 coders. The average salary of a coder is $ 1-2k, if we are talking about CIS coders. So this is not such a bad investment.

This article is for informational purposes only and does not call for action!
 
Top