Category: Uncategorized

feb.scorevidic.net(botnet hosted in United States Baltimore Gandi Us Inc)

Uncategorized

Remote Host Port Number feb.scorevidic.net 5900 Resolved : [feb.scorevidic.net] To [173.246.103.17] Resolved : [feb.scorevidic.net] To [173.246.103.19] NICK VirUs-zlxuiykn USER VirUs “” “zte” : 8Coded 8Ahmed.Ramzey@Hotmail.Com.. JOIN #Rana1# Virus PONG :TESTING1.VirUs.HERE 00000000 | 5041 5353 2056 6972 7573 0D0A 4E49 434B | PASS Virus..NICK 00000010 | 2056 6972 5573 2D78 7565 757A 7966 790D | VirUs-xueuzyfy.Read more...

95.154.237.183(botnet hosted in Amsterdam)

Uncategorized

Remote Host Port Number 95.154.237.183 6667 PASS timu MODE USA|87388 -x+i JOIN #1 timu USERHOST USA|87388 NICK USA|87388 USER otjzn 0 0 :USA|87388 infos about hosting: http://whois.domaintools.com/95.154.237.183

c.bravepath3.com(bfbotnet hosted in Russian Federation Vline Ltd)

Uncategorized

– DNS Queries: Name Query Type Query Result Successful Protocol c.bravepath3.com DNS_TYPE_A 109.196.142.58 109.196.142.66 YES udp hubz.imfatguy.info DNS_TYPE_A 127.0.0.1 YES udp b.bravepath3.com DNS_TYPE_A 109.196.142.66 109.196.142.58 YES udp hubz.lebanonbot.com DNS_TYPE_A NO udp a.bravepath3.com DNS_TYPE_A 109.196.142.66 109.196.142.58 YES udp – TCP Connection Attempts: 109.196.142.58:1110 109.196.142.66:1110 109.196.142.66:1110 infos about hosting: http://whois.domaintools.com/109.196.142.58

dns.aswend.com(botnet hosted in Japan Kyoei Co. Ltd)

Uncategorized

Remote Host Port Number dns.aswend.com 7000 NICK FL835823620348 USER esiuexzgqlzptu 0 0 :FL835823620348 USERHOST FL835823620348 MODE FL835823620348 +i JOIN #GL .x. NICK FL539494212430 USER uadfqtgvbtfj 0 0 :FL539494212430 USERHOST FL539494212430 MODE FL539494212430 +i NICK FL170074885810 USER cpfvdbtnvtbczk 0 0 :FL170074885810 USERHOST FL170074885810 MODE FL170074885810 +i NICK FL462091484949 USER dqvrrmetrdzqix 0 0 :FL462091484949 USERHOST FL462091484949 MODERead more...