tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5801
|
Posted: Sun Jun 29, 2008 12:08 am Post subject: [MIRT#12316] Trojan-Downloader on freewebtown.com AS36820 |
|
|
Malware Alert Full Report: /Trojan_Downloader_malware12316.html Changed status to confirmed malware.IP Converted: 208.75.230.43
dword = 3494635051
hex1 = 0xd04be62b
hex2 = 0xd0.0x4b.0xe6.0x2b
oct = 0320.0113.0346.053
alteracao.com at this location is malware known as Trojan-Downloader.Win32.Banload.pqm (Kaspersky).View CIDR AS36820 Report: http://www.cidr-report.org/cgi-bin/as-report?as=36820
"36820 | US | arin | 2006-05-05 | TULIP-SYSTEMS-INC-HOSTING-55-MARIETTA-ATLANTA - TULIP SYSTEMS, INC."<br />
Extended information for AS36820:
State/Province: ga
Country: us
Responsible Domain: tulix.com
Abuse Email: kacer@tulix.com
| Quote: | | http://www.freewebtown.com/alteradasenha/hotmail/alteracao.com |
|
|