by qorez
Amun is a low-interaction honeypot, like Nepenthes or Omnivora, designed to capture autonomous spreading malware in an automated fashion. Amun is written in Python and therefore allows easy integration of new features.
qorez committed revision 31 to the Amun SVN repository, changing 1 files
Changes in v0.1.7:
- added new bindshell detection
- added log-surfnet modul
- added amun sql layout amun_db.sql
- added vuln-ms08067 modul (milworm)
- added bielefeld encoded URL detection
- fixed linkbot ...
Changes in v0.1.6:
- fixed submit-cwsandbox timeout issue
- fixed submit-cwsandbox result url parsing
- modified ftp download module
- modified for-loops in shellcodemanager
- modified range to xrange
- ...
Changes in v0.1.5: - fixed reload config missing return value - fixed connectback config_dict variable not global error - added shellcode decoder for alpha2 zero tolerance shellcode - added new vulnerability modul for HP OpenView exploit - added ...
Changes in v0.1.4: - fixed ftp download module to send requests one by one - fixed manual analysis option to work again after last update (missing parameter) - added new vulnerability modul for Helix server v11.0.1 exploit - modified ftp shellcode ...
Changes in v0.1.3: - fixed tftp download packet ACK reply to correct port - fixed setting download identifier for tftp downloads - fixed properly checking blocked hosts - fixed double closing of bindports, http, connback, and ftp downloads - added ...
Changes in v0.1.2: - fixed delete existing connection function - fixed amun_config_parser to parse empty variables and set to none - fixed amun_config_parser to allow comment of modules with '#' - added submit-anubis modul - added different options for ...
Changes in v0.1.1: - fixed amun request handler to close finished connections - fixed submit-md5 modul to write in binary mode - fixed connectbackshell loading shellcodemanager correctly - fixed connectbackshell replying with prompt - fixed bindport ...
Copyright © 2009 SourceForge, Inc. All rights reserved. Terms of Use