That looks like (some version of ) Delphi. They probably cranked it out in 1 minute flat. RAD in action!

That looks like (some version of ) Delphi.  They probably cranked it out in 1 minute flat.  RAD in action!
http://arstechnica.com/security/2013/11/new-denial-of-service-attack-aimed-directly-at-healthcare-gov/

Comments

  1. Probably Delphi 5, most likely it posts that text to the server many times, unfortunately, the web server is probably configured poorly so it's overloading while it should basically ban the IP for some period.

    ReplyDelete
  2. The executable analysis screenshot shows that the tool simply uses TWebBrowser and a TTimer.  Run enough instances of that .exe on enough machines and you’ve got a DDOS attack.

    ReplyDelete

Post a Comment