Alter IW Back Door

Posts 1–10 of 10 · Page 1 of 1
Alter IW Back Door
alterIWnet administrators are USING their dedicated server admins' computers to launch DDoS attacks. Or there is some exploit that just happens to include a UDP flooder.. yeah, explain that, aIW.

We must bring this to light.

(Mind you, this is not the first time Max has used the alterIWnet servers to launch DDoS attacks. And for some reason this suspicious executable sends a call home packet to Bulgaria. Strange. And the IP is the same one Max used to login to our forums. Yet strange again!)

Also, iw4mp.exe connects to a SUSPICIOUS IP IN BULGARIA on port 28940. (The IP is actually marked as virus-herding by many firewalls, including Malwarebytes, that's how I know)

Also, this "suspicious IP" is Max's IP. He signed up on our forum some time ago and validated his email (max@alteriw.net) and the IP matches.

Solution:

Stop playing alterIWnet and spread this message.

Proof:

alterIWnet • View topic - [Exploit] Server utilizing large amount of bandwidth
alterIWnet • View topic - Question: Traffic?
Seriously...



*drama*
NTAuthority = Anonymous
i was just helping a friend by spreding what he got ddos'd and he looked it up and wala, dont flame kid wont get u far
Quote Originally Posted by JackSTR View Post
dont flame kid wont get u far
Quote Originally Posted by JackSTR View Post
Stop playing alterIWnet and spread this message.
Also, if you don't copy and send this thread to 50 friends you'll get DDoSed by Microsofts huge botnet. You see your computer using the internet? That's Microsofts bot sending data!!!

As soon as someone uses the Server Parser or pings your server it's really just requesting info about if the client is flooding the internets.. Don't be deceived just because the server actually prints to the console that it sent a packet, it's really just requesting new orders!!
Quote Originally Posted by JackSTR View Post
We must bring this to light.
Quote Originally Posted by JackSTR View Post
Stop playing alterIWnet and spread this message.

Seriously though, there's 1,2k Servers and 13k players online right now. Let's pretend that aIW is a huge botnet, let's say that half of the servers have 2Mb/s upload and the other half have 20 Mb/s. The players have 1 Mb/s.
Servers A: 1200Mb/s
Servers B: 12000Mb/s
Players...: 13000Mb/s
Total......: 26200Mb/s ( 262Gb/s) worth of bandwidth.

Now, please tell us where that amount of traffic could be sent without anyone noticing.. and more to the point, why would a botnet of that size be used to take out a home connection?
Also, having all of those bots sending status messages to MD would make him flood himself, that sounds smart..

But ye, conspiracy theories are always fun..
Quote Originally Posted by aIW|Convery View Post
Also, if you don't copy and send this thread to 50 friends you'll get DDoSed by Microsofts huge botnet. You see your computer using the internet? That's Microsofts bot sending data!!!

As soon as someone uses the Server Parser or pings your server it's really just requesting info about if the client is flooding the internets.. Don't be deceived just because the server actually prints to the console that it sent a packet, it's really just requesting new orders!!




Seriously though, there's 1,2k Servers and 13k players online right now. Let's pretend that aIW is a huge botnet, let's say that half of the servers have 2Mb/s upload and the other half have 20 Mb/s. The players have 1 Mb/s.
Servers A: 1200Mb/s
Servers B: 12000Mb/s
Players...: 13000Mb/s
Total......: 26200Mb/s ( 262Gb/s) worth of bandwidth.

Now, please tell us where that amount of traffic could be sent without anyone noticing.. and more to the point, why would a botnet of that size be used to take out a home connection?
Also, having all of those bots sending status messages to MD would make him flood himself, that sounds smart..

But ye, conspiracy theories are always fun..
Has spoken.
Posts 1–10 of 10 · Page 1 of 1
This thread is closed for replies.

Similar Threads

Tags for this Thread

None

Need help?