[nsp-sec] Two Flashback C&Cs: HE, NTT, Internap, Limelight

White, Gerard Gerard.White at bellaliant.ca
Thu Apr 19 14:07:53 EDT 2012


So...  1 Bad Botnet and all this action...

Wonder what Apple will do when the malware scales start to tip in their direction?

GW

-----Original Message-----
From: nsp-security-bounces at puck.nether.net [mailto:nsp-security-bounces at puck.nether.net] On Behalf Of Bill Woodcock
Sent: April-19-12 3:13 PM
To: NSP-SEC nsp-security
Subject: Re: [nsp-sec] Two Flashback C&Cs: HE, NTT, Internap, Limelight

----------- nsp-security Confidential --------


* PGP Signed by an unknown key

>> rfffnahfiywyd.net
>> vxvhwcixcxqxd.net
>> AS      | IP               | AS Name
>> 6939    | 74.207.249.7     | HURRICANE - Hurricane Electric, Inc.

This did, in fact, trace back through HE to Linode to Unveillance.  Thanks, Nick.

                                -Bill




* Unknown Key
* 0x288B7F87(L)





_______________________________________________
nsp-security mailing list
nsp-security at puck.nether.net
https://puck.nether.net/mailman/listinfo/nsp-security

Please do not Forward, CC, or BCC this E-mail outside of the nsp-security
community. Confidentiality is essential for effective Internet security counter-measures.
_______________________________________________
-------------- next part --------------
A non-text attachment was scrubbed...
Name: PGP.sig
Type: application/pgp-signature
Size: 183 bytes
Desc: not available
URL: <https://puck.nether.net/mailman/private/nsp-security/attachments/20120419/aa4ad95d/attachment-0001.sig>


More information about the nsp-security mailing list