Handler on Duty: Guy Bruneau
Threat Level: green
Loading...
|
|
Submitted By | Date |
---|---|
Comment | |
Orazio Mistretta | 2006-12-22 13:58:41 |
Kind of traffic seen in association with eDonkey 2000 and/or trojan activity: N. events conversations ======================== 216 tcp 10.1.6.100 -> 83.149.72.127(4661) eDonkey2000 Server Port 213 tcp 10.1.6.100 -> 213.251.161.103(4661) “ 213 tcp 10.1.6.100 -> 84.16.224.61(4661) “ 213 tcp 10.1.6.100 -> 83.149.72.197(22661) 212 tcp 10.1.6.100 -> 83.149.72.131(3661) eDonkey2000 Server Port 212 tcp 10.1.6.100 -> 213.186.45.91(4661) eDonkey2000 Server Port 212 udp 10.1.3.60 -> 255.255.255.255(2968) Symantec AV, Radmin trojan 210 tcp 10.1.6.100 -> 213.202.245.194(4661) eDonkey2000 Server Port 210 tcp 10.1.6.100 -> 83.149.72.187(9661) 210 tcp 10.1.6.100 -> 64.34.193.61(2345) 210 tcp 10.1.6.100 -> 84.16.224.50(4661) eDonkey2000 Server Port 210 tcp 10.1.6.100 -> 83.149.72.192(12661) 210 tcp 10.1.6.100 -> 83.149.72.193(13661) 210 tcp 10.1.6.100 -> 83.149.72.198(24661) 210 tcp 10.1.6.100 -> 61.234.11.22(4661) eDonkey2000 Server Port 210 tcp 10.1.6.100 -> 64.34.194.180(7632) 210 tcp 10.1.6.100 -> 83.149.72.133(7661) 210 tcp 10.1.6.100 -> 64.34.194.180(2672) 210 tcp 10.1.6.100 -> 80.239.200.104(3000) [trojan] InetSpy 210 tcp 10.1.6.100 -> 80.239.200.106(3000) “ 209 tcp 10.1.6.100 -> 80.239.200.105(3000) “ |
CVE # | Description |
---|