tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5869
|
Posted: Mon Apr 14, 2008 12:06 am Post subject: [MIRT#9715] Trojan on 203.124.22.143 AS37986 |
|
|
Malware Alert Full Report: /Trojan_malware9715.html Changed status to confirmed malware.IP Converted: 203.124.22.143
dword = 3413907087
hex1 = 0xcb7c168f
hex2 = 0xcb.0x7c.0x16.0x8f
oct = 0313.0174.026.0217
www.bluemountain.com FlashPlayer.exe at this location is malware known as Trojan.Win32.Agent.jwu (Kaspersky).View CIDR AS37986 Report: http://www.cidr-report.org/cgi-bin/as-report?as=37986
"37986 | IN | apnic | 2006-03-21 | TULIP Tulip IT Services Limited"<br />
Extended information for AS37986:
State/Province:
Country: in
Responsible Domain: tulipit.com
Abuse Email: hariom@tulipit.com
| Quote: | | http://203.124.22.143/www.bluemountain.com%20FlashPlayer.exe |
|
|