[MIRT#9116] Trojan-Downloader on freewebtown.com AS36820

CastleCops -> MIRT Reports

Author: tetak PostPosted: Tue Mar 25, 2008 6:10 pm    Post subject: [MIRT#9116] Trojan-Downloader on freewebtown.com AS36820

Malware Alert
 
 Full Report: CastleCops Link/Trojan_Downloader_malware9116.html
 
 Changed status to confirmed malware.IP Converted: 208.75.230.43

dword = 3494635051
hex1 = 0xd04be62b
hex2 = 0xd0.0x4b.0xe6.0x2b
oct = 0320.0113.0346.053
is151970.exe at this location is malware known as TrojanDownloader:Win32/Cbeplay.B (Microsoft).View CIDR AS36820 Report: http://www.cidr-report.org/cgi-bin/as-report?as=36820

"36820 | US | arin | 2006-05-05 | TULIP-SYSTEMS-INC-HOSTING-55-MARIETTA-ATLANTA - TULIP SYSTEMS, INC."<br />
Extended information for AS36820:
State/Province: ga
Country: us
Responsible Domain: tulix.com
Abuse Email: gb@tulix.com
Quote:
http://www.freewebtown.com/kaltrin/is151970.exe



CastleCops -> MIRT Reports

All times are GMT

Page 1 of 1


Powered by phpBB © 2001 phpBB Group