Month: December 2010

giuetuhje.com(Spy Eye hosted with China Daqing Daqing Software Center)

Uncategorized

giuetuhje.com giuetuhje.com 122.156.219.126 www.google.com www.google.com 209.85.148.106 Opened listening TCP connection on port: 17527Download URLs http://122.156.219.126/best/gwgw.img (giuetuhje.com) http://122.156.219.126/best/gwgw.img (giuetuhje.com) http://209.85.148.106/webhp (www.google.com) Outgoing connection to remote server: giuetuhje.com TCP port 80 Outgoing connection to remote server: giuetuhje.com TCP port 80 Outgoing connection to remote server: 122.227.108.26 TCP port 80 Outgoing connection to remote server: giuetuhje.com TCP portRead more...

79.103.31.60(botnet hostet with Greece Adsl Llu Pools)

Uncategorized

Remote Host Port Number 79.103.31.60 7000 NICK USA|98366 USER pmlaix 0 0 :USA|98366 NICK USA|65758 USER aarzwbc 0 0 :USA|65758 PONG :8D08D6EC JOIN #rz# rZr NICK USA|77249 USER cfmgjxv 0 0 :USA|77249 PONG :844AC46E NICK USA|78515 USER fixrl 0 0 :USA|78515 PONG :74E4C1F6 NICK USA|16716 USER yqwsb 0 0 :USA|16716 PONG :7A44D0C1 NICK USA|99792 USERRead more...

java.KUTLUFAMILY.COM(botnet hosted with Turkey Radore Hosting Telekomunikasyon Hizmetleri San. Ve Tic. Ltd. Sti)

Uncategorized

– DNS Queries: Name Query Type Query Result Successful Protocol java.kutlufamily.com DNS_TYPE_A 178.211.56.105 178.211.56.104 www.pr0.net DNS_TYPE_A 74.206.242.164 YES udp Resolved : [java.KUTLUFAMILY.COM] To [178.211.56.104] Resolved : [java.KUTLUFAMILY.COM] To [178.211.56.105] Remote Host Port Number 178.211.56.104 81 74.206.242.164 80 NICK [N00_USA_XP_2259315]( PRIVMSG [N00_USA_XP_2259 @ :scan; Sequential Port Scan started on 174.133.89.0:445 with a delay of 5 secondsRead more...