tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5879
|
Posted: Wed Nov 14, 2007 7:32 am Post subject: [MIRT#6251] Trojan-Spy on zsdacice.cz AS29113 |
|
|
Malware Alert Full Report: /Trojan_Spy_malware6251.html Consumed following related reports:
[2212] http://www.zsdacice.cz/soubory/vivofoto.exe
Changed status to confirmed malware. IP Converted: 62.240.182.162
dword = 1055962786
hex1 = 0x3ef0b6a2
hex2 = 0x3e.0xf0.0xb6.0xa2
oct = 076.0360.0266.0242
View CIDR AS29113 Report: http://www.cidr-report.org/cgi-bin/as-report?as=29113
"29113 | CZ | ripencc | 2003-06-06 | SLOANE-AS Sloane Park Property Trust, a.s. Autonomous System"<br />
Extended information for AS29113:
State/Province:
Country: cz
Responsible Domain: sloane.cz
Abuse Email: postmaster@sloane.cz
vivofoto.exe and napraiaaa.exe at this location is malware known as Trojan-Spy.Win32.Banker.gbd (Kaspersky)
| Quote: | | http://www.zsdacice.cz/soubory/napraiaaa.exe |
|
|