[nsp-sec] Live Botnet C&C on Undernet

Scott Berkman sberkman at broadriver.com
Thu Sep 27 16:31:43 EDT 2012


I have information about a live C&C running on Undernet
(Tampa.FL.US.Undernet.org #ferrari) from a customer's Linux server that
was compromised.

 

Do we have anyone on list interesting in looking into this?

 

I have piles of logs and such if anyone wants them.

 

Thanks,

 

------------------------------------------------------------------------
-

Scott Berkman

Network Engineer

404-961-1026

sberkman at broadriver.com

  <http://www.broadriver.com/> 

 

-------------- next part --------------
A non-text attachment was scrubbed...
Name: image001.jpg
Type: image/jpeg
Size: 4078 bytes
Desc: image001.jpg
URL: <https://puck.nether.net/mailman/private/nsp-security/attachments/20120927/4b9cd218/attachment-0001.jpg>


More information about the nsp-security mailing list