tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5801
|
Posted: Mon Jun 30, 2008 8:38 pm Post subject: [MIRT#4635] Trojan-Downloader on 209.120.242.82 AS6517 |
|
|
Malware Alert Full Report: /Trojan_Downloader_malware4635.html Changed status to confirmed malware.IP Converted: 209.120.242.82
dword = 3514364498
hex1 = 0xd178f252
hex2 = 0xd1.0x78.0xf2.0x52
oct = 0321.0170.0362.0122
claro.exe at this location is malware known as TrojanDownloader:Win32/Banload (Microsoft).View CIDR AS6517 Report: http://www.cidr-report.org/cgi-bin/as-report?as=6517
"6517 | US | arin | 2000-04-13 | RELIANCEGLOBALCOM - Reliance Globalcom Services, Inc"<br />
Extended information for AS6517:
State/Province: ca
Country: us
Responsible Domain: yipes.com
Abuse Email: abuse@yipes.com
| Quote: | | http://209.120.242.82/index2.php?cod=claro |
|
|