Resolved trik.su to 174.127.123.4 Server: trik.su Port: 5050 Channel: #trk #trk :.j #upd .u trk2 /120/126/99/107/25/61/37/112/72/120/110/67/113/123/122/115/35/64/118/114/35/123/85/74/78/111/125/83/8/55/46/39/32/63/42/55/63/35/44/11/42/38/32/37/120/110/121/ Channel: #upd #upd :.u trk2 /120/126/99/107/25/61/37/103/86/99/120/83/100/118/123/98/98/13/108/108/35/123/85/74/15/107/97/69/ Hosting info: http://whois.domaintools.com/174.127.123.4 Related md5s (Download samples from Malwr.com) Aspermod: 1f876d3830527f22f84205069695d3d2
92.48.86.88(Aspergillus mod hosted in United Kingdom Maidenhead Simply Transit Ltd)
Thanx to loadx for finding this botnet. 92.48.86.88:81PASS adobe2.tmp NICK n[USA|XP]339728 USER 3397 “” “win” :3397 JOIN #s jobs Now talking in #s Topic On: [#s ] [ !dl hxxp://www.divshare.com/direct/24632542-a3c.tee ] Topic By: [ x ] hosting infos: http://whois.domaintools.com/92.48.86.88