Thursday, June 11, 2009

Malicious URLs * 11-June-09*

Malicious link
Domain: 216.226.131.77/

Level 1: http://216.226.131.77/seraph/door/news/index.htm
Level 2: http://216.226.131.77/seraph/door/news/flash.htm
Level 3: http://216.226.131.77/seraph/door/news/iss.html
Level 4: http://216.226.131.77/seraph/door/news/swfobject.js
Level 4: http://js.tongji.linezing.com/930456/tongji.js
Level 4: http://img.tongji.linezing.com/930456/tongji.gif
Level 4: http://216.226.131.77/seraph/door/news/i16.swf
Level 4: http://216.226.131.77/seraph/door/news/i28.swf
Level 4: http://216.226.131.77/seraph/door/news/i45.swf
Level 4: http://216.226.131.77/seraph/door/news/i47.swf
Level 4: http://216.226.131.77/seraph/door/news/i64.swf
Level 4: http://216.226.131.77/seraph/door/news/i115.swf
Level 3: http://216.226.131.77/seraph/door/news/fss.html
Level 4: http://216.226.131.77/seraph/door/news/swfobject.js
Level 4: http://js.tongji.linezing.com/930456/tongji.js
Level 4: http://img.tongji.linezing.com/930456/tongji.gif
Level 4: http://216.226.131.77/seraph/door/news/i16.swf
Level 4: http://216.226.131.77/seraph/door/news/i28.swf
Level 4: http://216.226.131.77/seraph/door/news/i45.swf
Level 4: http://216.226.131.77/seraph/door/news/i47.swf
Level 4: http://216.226.131.77/seraph/door/news/i64.swf
Level 4: http://216.226.131.77/seraph/door/news/i115.swf
Level 2: http://216.226.131.77/seraph/door/news/a4.htm
Level 3: http://216.226.131.77/seraph/door/news/14.js
Level 4: (Trojan) http://209.162.188.225/calcs.exe
Level 2: http://216.226.131.77/seraph/door/news/office.htm
Level 3: http://216.226.131.77/seraph/door/news/of.js
Level 4: (Trojan) http://209.162.188.225/calcs.exe
Level 2: http://216.226.131.77/seraph/door/news/02.htm
Level 3: http://216.226.131.77/seraph/door/news/set.js
Level 2: http://216.226.131.77/seraph/door/news/pef.pdf

Trojan file was submitted to VirusTotal for analysis.



Domain: *cv9u.cn/

Level 1: http://www.cv9i.cn/index.htm
Level 2: http://www.cv9i.cn/flash.htm
Level 3: http://www.cv9i.cn/iss.html
Level 4: http://www.cv9i.cn/swfobject.js
Level 4: http://www.cv9i.cn/i16.swf
Level 4: http://www.cv9i.cn/i28.swf
Level 4: http://www.cv9i.cn/i45.swf
Level 4: http://www.cv9i.cn/i47.swf
Level 4: http://www.cv9i.cn/i64.swf
Level 4: http://www.cv9i.cn/i115.swf
Level 3: http://www.cv9i.cn/fss.html
Level 4: http://www.cv9i.cn/swfobject.js
Level 4: http://www.cv9i.cn/i16.swf
Level 4: http://www.cv9i.cn/i28.swf
Level 4: http://www.cv9i.cn/i45.swf
Level 4: http://www.cv9i.cn/i47.swf
Level 4: http://www.cv9i.cn/i64.swf
Level 4: http://www.cv9i.cn/i115.swf
Level 2: http://www.cv9i.cn/a4.htm
Level 3: http://www.cv9i.cn/14.js
Level 4: http://www.cxi7.cn/t.exe
Level 2: http://www.cv9i.cn/office.htm
Level 3: http://www.cv9i.cn/of.js
Level 4: http://www.cxi7.cn/t.exe
Level 2: http://www.cv9i.cn/02.htm
Level 3: http://www.cv9i.cn/set.js
Level 2: http://www.cv9i.cn/pef.pdf

Malicious file was submitted to VirusTotal for analysis.


Disclaimer:
Whatever url links that posted above contain malicious files/trojan/virus that could harm your systems and information be stolen;Usage:URL links that posted only used for IT security officers, researchers and personal collection only. Any farmful actions totally prohibited. Used it with your own risks and wisely. Whatever risks, and consequences is totally out from to this web owner responsibility.

0 comments: