tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5869
|
Posted: Thu May 22, 2008 3:57 am Post subject: [MIRT#11754] Trojan-Dropper on tagalery.info AS8560 |
|
|
Malware Alert Full Report: /Trojan_Dropper_malware11754.html Consumed following related reports:
[11786] http://tagalery.info/mpg_porn914.exe
Changed status to confirmed malware.IP Converted: 82.165.84.128
dword = 1386566784
hex1 = 0x52a55480
hex2 = 0x52.0xa5.0x54.0x80
oct = 0122.0245.0124.0200
mpg_porn914.exe at this location is malware known as TrojanDropper:Win32/Nuwar.gen!lds (Microsoft).View CIDR AS8560 Report: http://www.cidr-report.org/cgi-bin/as-report?as=8560
"8560 | DE | ripencc | 1997-11-26 | ONEANDONE-AS 1&1 Internet AG"<br />
Extended information for AS8560:
State/Province:
Country: de
Responsible Domain: schlund.net
Abuse Email: abuse@schlund.net
| Quote: | | http://tagalery.info/main12.php |
|
|