tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5869
|
Posted: Thu May 22, 2008 3:22 am Post subject: [MIRT#11688] Trojan-Downloader on pop3.gmail2.pop3.ru AS6731 |
|
|
Malware Alert Full Report: /Trojan_Downloader_malware11688.html Changed status to confirmed malware.IP Converted: 82.204.219.233
dword = 1389157353
hex1 = 0x52ccdbe9
hex2 = 0x52.0xcc.0xdb.0xe9
oct = 0122.0314.0333.0351
You_tube_play.exe at this location is malware known as Trojan-Downloader.Win32.Banload.kgg (Kaspersky).View CIDR AS6731 Report: http://www.cidr-report.org/cgi-bin/as-report?as=6731
"6731 | RU | ripencc | 1996-07-30 | COMSTAR-AS COMSTAR Telecommunications"<br />
Extended information for AS6731:
State/Province:
Country: ru
Responsible Domain: comstar.ru
Abuse Email: abuse@comstar.ru
| Quote: | | http://pop3.gmail2.pop3.ru/You_tube_play.exe |
|
|