tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5879
|
Posted: Thu Nov 01, 2007 6:38 pm Post subject: [MIRT#5633] eCard on 69.208.120.130 AS7132 |
|
|
Malware Alert Full Report: /eCard_malware5633.html Changed status to confirmed malware. IP Converted: 69.208.120.130
dword = 1171290242
hex1 = 0x45d07882
hex2 = 0x45.0xd0.0x78.0x82
oct = 0105.0320.0170.0202
View CIDR AS7132 Report: http://www.cidr-report.org/cgi-bin/as-report?as=7132
"7132 | US | arin | 1996-09-13 | SBIS-AS - AT&T Internet Services"<br />
Extended information for AS7132:
State/Province: tx
Country: us
Responsible Domain: swbell.net
Abuse Email: abuse@swbell.net
halloween.exe at this location is malware known as Trojan:Win32/Tibs.EV (Microsoft)
| Quote: | | http://69.208.120.130/ |
|
|