Month: November 2013

norton360america.biz (betabot http botnet hosted by psychz.net)

Uncategorized

Resolved norton360america.biz to 199.71.215.3 Server:  norton360america.biz Gate file:  /joomla/order.php Alternate domains: fuckencio.comnoticiasmerica.biznoticiasmerica.inhomelad.meallape.meallape.org One of the backup domains was used in a previous botnet. Hosting infos: http://whois.domaintools.com/199.71.215.3 Related md5s (Download sample from Malwr.com) Betabot: cc546493b759600dda8dae44da0f1000

tri57jv3.biz (Betabot http botnet hosted by glesys.se)

Uncategorized

Resolved tri57jv3.biz to 94.247.168.151 Server:  tri57jv3.biz Gate file:  /path/order.php Alternate domains: ykf33ork.biz 5gkd690.bizufrtk67i.biz7gkmir75.biz87fguyh4.biz Hosting infos: http://whois.domaintools.com/94.247.168.151 Related md5s (Download samples from Malwr.com) Betabot: aacce65d6339496a14c86d21d81d37bb

javatube.net (Betabot http botnet hosted by ecatel.net)

Uncategorized

Resolved javatube.net to 94.102.51.123 Server:  javatube.net Gate file:  /singers/song/singles.php Alternate domains: menbbs.netthepremiumsellers.comjuxtaposewhereami.no-ip.biz Hosting infos: http://whois.domaintools.com/94.102.51.123 Related md5s (Download samples from Malwr.com Betabot: 319fe02b18bd75e529bccc317712ad10