tetak
MIRT Team Lead Premium Member
 Joined: Jan 19, 2007 Posts: 5741
|
Posted: Tue Jun 03, 2008 5:02 pm Post subject: [MIRT#12332] Backdoor on 213.155.3.32 AS41665 |
|
|
Malware Alert Full Report: /Backdoor_malware12332.html Changed status to confirmed malware.IP Converted: 213.155.3.32
dword = 3583705888
hex1 = 0xd59b0320
hex2 = 0xd5.0x9b.0x3.0x20
oct = 0325.0233.03.040
found.exe at this location is malware known as Backdoor:Win32/Nuwar.gen!D (Microsoft).View CIDR AS41665 Report: http://www.cidr-report.org/cgi-bin/as-report?as=41665
"41665 | UA | ripencc | 2006-10-03 | HOSTING-AS National Hosting Provider, Hosting.UA"<br />
Extended information for AS41665:
State/Province:
Country: ua
Responsible Domain: hosting.ua
Abuse Email: abs@hosting.ua
| Quote: | | http://213.155.3.32/aff/dir/found.exe |
|
|