tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5864
|
Posted: Mon Aug 13, 2007 2:37 pm Post subject: [MIRT#38] eCard on 77.192.138.218 AS15557 |
|
|
Malware Alert Full Report: /eCard_malware38.html Changed status to confirmed malware. IP Converted: 77.192.138.218
dword = 1304464090
hex1 = 0x4dc08ada
hex2 = 0x4d.0xc0.0x8a.0xda
oct = 0115.0300.0212.0332
View CIDR AS15557 Report: http://www.cidr-report.org/cgi-bin/as-report?as=15557
"15557 | FR | ripencc | 2000-08-03 | LDCOMNET NEUF CEGETEL (formerly LDCOM NETWORKS)"<br />
Extended information for AS15557:
State/Province:
Country: fr
Responsible Domain: ldcom.fr
Abuse Email: abuse@gaoland.net
ecard.exe at this location is a Win32/Nuwar.Gen worm as seen by NOD32
| Quote: | | http://77.192.138.218/?ed2175ee0c2a4c1c8a8aa50bb |
|
|