[MIRT#11361] Backdoor on tokcam.net AS36351

CastleCops -> MIRT Reports

Author: tetak PostPosted: Sat May 10, 2008 9:28 pm    Post subject: [MIRT#11361] Backdoor on tokcam.net AS36351

Malware Alert
 
 Full Report: CastleCops Link/Backdoor_malware11361.html
 
 Changed status to confirmed malware.nzm1.exe at this location is malware known as Backdoor:Win32/IRCbot.AH (Microsoft).IP Converted: 208.101.43.120

dword = 3496291192
hex1 = 0xd0652b78
hex2 = 0xd0.0x65.0x2b.0x78
oct = 0320.0145.053.0170
View CIDR AS36351 Report: http://www.cidr-report.org/cgi-bin/as-report?as=36351

"36351 | US | arin | 2005-12-12 | SOFTLAYER - SoftLayer Technologies Inc."<br />
Extended information for AS36351:
State/Province: tx
Country: us
Responsible Domain: softlayer.com
Abuse Email: abuse@softlayer.com
Quote:
http://tokcam.net/nzm1.exe



CastleCops -> MIRT Reports

All times are GMT

Page 1 of 1


Powered by phpBB © 2001 phpBB Group