Remote Host Port Number 195.122.131.11 80 213.251.170.52 80 64.62.243.91 80 89.238.176.123 4042 IRCD here Now talking in #newbiz# Topic On: [ #newbiz# ] [ ] Topic By: [ b ] hosting infos: http://whois.domaintools.com/89.238.176.123
204.15.252.199(irc botnet hosted in United States Henderson Trashy Media)
UPDATE: 204.15.252.199:4042 Irc Trafic: NICK new[BEL|XP|Pig-D17A7D27]dvxotgy USER hh “” “lol” :hh Now talking in #newbiz# Topic On: [ #newbiz# ] [ .down /99/106/112/81/55/59/40/125/111/122/35/108/114/121/114/116/115/106/104/122/126/121/37/69/76/117/48/113/107/125/118/126/47/108/116/84/47/102/113/71/ ] Topic By: [ b ] Topic: b sets topic [] hosting infos: http://whois.domaintools.com/204.15.252.199
117.211.84.155(irc botnet hosted in India Bangalore O/o Dgm Bb Noc Bsnl Bangalore)
Remote Host Port Number 117.211.84.155 25343 PASS scary NICK [USA|XP|XmWCMYN5] USER 9583 “” “lol” :9583 NICK [USA|XP|UFdwiY47] USER 4508 “” “lol” :4508 NICK [USA|XP|YZw7cS8u] USER 2152 “” “lol” :2152 NICK [USA|XP|X2XUcWQU] NICK [USA|XP|cuCVirAD] USER 6242 “” “lol” :6242 NICK [USA|XP|bx3Iivi3] USER 8840 “” “lol” :8840 NICK [USA|XP|fRQNcpmq] USER 6294 “” “lol” :6294 hosting infos http://whois.domaintools.com/117.211.84.155
193.107.16.122(irc botnet hosted in Seychelles Ideal Solution Ltd)
Remote Host Port Number 193.107.16.122 7654 PASS ngrBot 213.251.170.52 80 66.7.204.144 80 NICK n{US|XPa}kaumfsh USER kaumfsh 0 0 :kaumfsh JOIN #oldgold noKIDs PRIVMSG #oldgold :[DNS]: Blocked 0 domain(s) – Redirected 12 domain(s) hosting info: http://whois.domaintools.com/193.107.16.122
hubs.ishtiben.com(irc botnet hosted in China)
Resolved : [hubs.ishtiben.com] To [60.190.218.104] Resolved : [hubs.ishtiben.com] To [59.63.157.62] Resolved : [hubs.ishtiben.com] To [123.183.217.32] Resolved : [hubs.ishtiben.com] To [60.190.223.125] Remote Host Port Number hubs.ishtiben.com 1110 PASS eee KCIK kqidriuawk rssr jtswecmrxx “” “pyk” :jtswecmrxx Chanels:#s,#i,
server.abimansour.com(irc botnet hosted in United States Chicago Hostforweb Inc)
Remote Host Port Number 204.0.5.41 80 216.178.38.224 80 63.135.80.46 80 85.118.137.12 80 66.225.238.146 2345 PASS xxx NICK NEW-[USA|00|P|22588] USER XP-4207 * 0 :COMPUTERNAME MODE NEW-[USA|00|P|22588] -ix JOIN #!gf! test PONG 22 MOTD UPDATE: NICK New[USA|00|P|78837] PRIVMSG #!loco! :[M]: Thread Disabled. PRIVMSG #!loco! :[M]: Thread Activated: Sending Message With Email. USER XP-3049 * 0 :COMPUTERNAME MODERead more...
72.20.30.22(irc botnet hosted in United States Staminus Communications)
Update: Remote Host Port Number 213.251.170.52 80 72.20.30.22 8888 PASS ngrBot PRIVMSG #spread :[MSN]: Updated MSN spread interval to “3” NICK n{US|XPa}htssucv USER htssucv 0 0 :htssucv JOIN #TeST-RouNd_03# ngrBot JOIN #spread JOIN #nazel JOIN #update hosting info: http://whois.domaintools.com/72.20.30.22
213.155.4.50(irc botnet hosted in Spain Girona Arselor – Aaron Goldu)
Remote Host Port Number 213.155.4.50 14789 PASS jarocho1986 213.251.170.52 80 NICK n{US|XPa}cpzqbzk USER cpzqbzk 0 0 :cpzqbzk JOIN #botes cochino007 hosting info: http://whois.domaintools.com/213.155.4.50
36mb malware samples
This package is around 36mb inside mostly banking trojans have fun searching Download: http://91a81406.tubeviral.com
ng.grasshopperz11.com(ngr bot hosted in China Beijing Chinanet Jiangxi Province Network)
DNS: ng.marketallone.com api.wipmania.com ng.themarketbaby.com ng.grasshopperz11.com Resolved : [ng.grasshopperz11.com] To [123.183.217.32] Resolved : [ng.grasshopperz11.com] To [60.190.218.104] Resolved : [ng.grasshopperz11.com] To [59.63.157.62] Resolved : [ng.grasshopperz11.com] To [59.53.91.167] Resolved : [ng.grasshopperz11.com] To [60.190.223.125] Resolved : [ng.marketallone.com] To [60.190.223.125] Resolved : [ng.marketallone.com] To [59.63.157.62] Resolved : [ng.marketallone.com] To [60.190.218.104] Resolved : [ng.marketallone.com] To [123.183.217.32] Resolved : [ng.marketallone.com] To [59.53.91.167]Read more...