tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5879
|
Posted: Thu Nov 01, 2007 4:17 am Post subject: [MIRT#5223] eCard on 71.201.139.27 AS33491 |
|
|
Malware Alert Full Report: /eCard_malware5223.html Changed status to confirmed malware. IP Converted: 71.201.139.27
dword = 1204390683
hex1 = 0x47c98b1b
hex2 = 0x47.0xc9.0x8b.0x1b
oct = 0107.0311.0213.033
View CIDR AS33491 Report: http://www.cidr-report.org/cgi-bin/as-report?as=33491
"33491 | US | arin | 2004-12-30 | DNEO-OSP7 - Comcast Cable Communications, Inc."<br />
Extended information for AS33491:
State/Province: nj
Country: us
Responsible Domain: comcast.net
Abuse Email: abuse@comcast.net
halloween.exe at this location is malware known as TrojanDropper:Win32/Nuwar.gen!avkill (Microsoft)
| Quote: | | http://71.201.139.27 |
|
|