Rxbot (also known as rBot) is a win32 computer IRC worm written in the C++ programming language that spreads on computers running Windows XP, Windows 2000, Windows Millennium, and Windows 9x systems.

Rxbot contains a built in SFTP, HTTP, RLOGIN, and a SOCKS4 proxy server that can be spawned by the remote attacker. A keylogger component is also included in the Rxbot source distributions. One downside is that the internal keylogger uses the GetASyncKeyState API part of the Win32 Api, which is known to be a major memory consumer. Rxbot contains a library of specific security holes that are exploited by the worm to propagate on other systems.

Rxbot are generally used to conduct Distributed Denial of Service Attacks against websites

A denial-of-service attack (DoS attack) or distributed denial-of-service attack (DDoS attack) is an attempt to make a computer resource unavailable to its intended users. Although the means to, motives for, and targets of a DoS attack may vary, it generally consists of the concerted, malevolent efforts of a person or persons to prevent an Internet site or service from functioning efficiently or at all, temporarily or indefinitely.

The latest and greatest version of RXbOT mods for FIREFOX !!!!

This version includes:
  • Encrypted strings (harder to decompile bot, use encrypt1.exe to encrypt)
  • MSN Spread
  • Working sym spread
  • MSSQL spread
  • Trend Micro Exploit Spread
  • Firefox (Gets users firefox passwords)
  • Pstore (Gets users IE passwords)
  • VNC Scanner
  • Sniffers
  • BuzShell
Special Notes: Note that ALL strings MUST BE ENCRYPTED (use the included encrypt1.exe) Also, this bot has troubles connecting to severs without DNS's, so either set up a free dns or hope your server has one. Run cleanup.bat before you compile.

