tequila bandita 1.2 beta 1
(Backdoor.Win32.Banito.j for Server)
(Backdoor.Win32.Banito.k for Client)
(Backdoor.Win32.Banito.plugin.a)
(Backdoor.Win32.Banito.plugin.b)
(Backdoor.Win32.Banito.plugin.c)
(Backdoor.Win32.Banito.plugin.d)

by stm

Written in Delphi

Released in July 2004

more versions


Changes in 1.2:
Fixed:
- -kill service processes on XP/2k
- -reboot computer bug
Removed:
- -broadcast upload (broadcast webdownloader is more efficient)
- -messages received statisticts
- -graph transfer statistics thingy
- -reset server
- -stream aim spy
- -php logger
Replaced:
- -Registry Run back to ActiveX startup method (and it works too!)
- -rename file with move file
- -the name
Added:
- -keylogger in the actual server. not a plugin anymore
- -resizable client
- -load custom dlls on server startup
- -user plugin support
- -remote shell (thx to drocon)
- -message box functions
- -Connection and OS info on connection list
- -bytes sent display
- -server prevents multiple instances
- -Network manager
- -File Searching
- -duplicate file
- -Create Directory in File Manager
- -file manager manual run box with params
- -goto dir on file manager
- -goto key on reg manager
- -and 1337 more things that i can't remember

Image Spy Plugin:
Fixed:
- -jpeg capture with 32bit colors
- -webcam crashing on xp when cam was in use or unplugged
added:
- -save image to PNG
- -Predefined Image Capture sizes

added: el Recover Plugin :
- -Protected Storage Passwords
- -Game CD Keys
- -RAS passwords

added: Zip Plugin (w/source) :
- -Zip Files and Folders

added: File Attributes (w/source) :
- -View/Change File Attributes

stm


Server:
dropped file:
c:\WINDOWS\winhost32.exe
size: 17.920 bytes
 
startup:
HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components\{XL8381D8F2-0288-11D0-9501-00AA00B911tb} "StubPath"
data: C:\WINDOWS\winhost32.exe 

MegaSecurity