tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5770
|
Posted: Tue Mar 25, 2008 6:10 pm Post subject: [MIRT#9116] Trojan-Downloader on freewebtown.com AS36820 |
|
|
Malware Alert Full Report: /Trojan_Downloader_malware9116.html Changed status to confirmed malware.IP Converted: 208.75.230.43
dword = 3494635051
hex1 = 0xd04be62b
hex2 = 0xd0.0x4b.0xe6.0x2b
oct = 0320.0113.0346.053
is151970.exe at this location is malware known as TrojanDownloader:Win32/Cbeplay.B (Microsoft).View CIDR AS36820 Report: http://www.cidr-report.org/cgi-bin/as-report?as=36820
"36820 | US | arin | 2006-05-05 | TULIP-SYSTEMS-INC-HOSTING-55-MARIETTA-ATLANTA - TULIP SYSTEMS, INC."<br />
Extended information for AS36820:
State/Province: ga
Country: us
Responsible Domain: tulix.com
Abuse Email: gb@tulix.com
| Quote: | | http://www.freewebtown.com/kaltrin/is151970.exe |
|
|