Advertisement
MalwareMustDie

#MalwareMustDie - Log of Report of 2 more Kelihos domains

Aug 9th, 2013
1,612
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 2.39 KB | None | 0 0
  1. #Copy of original dismantling email of Kelihos .COM tld domains
  2.  
  3. Gentlemen, regarding to Kelihos .COM tld domains,
  4. additionally, it was detected two more domains of NEW KELIHOS:
  5.  
  6. MOHOGOM.COM
  7. SELURAW.COM
  8. // credit: Dhia Mahjoub ‏@DhiaLite, Umbrella Labs
  9.  
  10. So this makes 11 domains released for this start weekend!
  11.  
  12. // the NEW Registrar as MO:
  13.  
  14. Domain Name: MOHOGOM.COM
  15. Registrar: PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM
  16. Whois Server: whois.PublicDomainRegistry.com
  17. Referral URL: http://www.PublicDomainRegistry.com
  18. Name Server: NS1.MOHOGOM.COM
  19. Name Server: NS2.MOHOGOM.COM
  20. Name Server: NS3.MOHOGOM.COM
  21. Name Server: NS4.MOHOGOM.COM
  22. Name Server: NS5.MOHOGOM.COM
  23. Name Server: NS6.MOHOGOM.COM
  24. Status: clientTransferProhibited
  25. Updated Date: 08-aug-2013
  26. Creation Date: 08-aug-2013
  27. Expiration Date: 08-aug-2014
  28.  
  29. Domain Name: SELURAW.COM
  30. Registrar: PDR LTD. D/B/A PUBLICDOMAINREGISTRY.COM
  31. Whois Server: whois.PublicDomainRegistry.com
  32. Referral URL: http://www.PublicDomainRegistry.com
  33. Name Server: NS1.SELURAW.COM
  34. Name Server: NS2.SELURAW.COM
  35. Name Server: NS3.SELURAW.COM
  36. Name Server: NS4.SELURAW.COM
  37. Name Server: NS5.SELURAW.COM
  38. Name Server: NS6.SELURAW.COM
  39. Status: clientTransferProhibited
  40. Updated Date: 08-aug-2013
  41. Creation Date: 08-aug-2013
  42. Expiration Date: 08-aug-2014
  43.  
  44. // Registration Service Provided By:
  45.  
  46. DOMALAND
  47.  
  48. Domain Name: SELURAW.COM, MOHOGOM.COM
  49.  
  50. Registration Date: 08-Aug-2013
  51. Expiration Date: 08-Aug-2014
  52.  
  53. Status:LOCKED
  54. Note: This Domain Name is currently Locked.
  55. This feature is provided to protect against fraudulent acquisition of the domain name,
  56. as in this status the domain name cannot be transferred or modified.
  57.  
  58. Name Servers:
  59. ns1.seluraw.com
  60. ns2.seluraw.com
  61. ns3.seluraw.com
  62. ns4.seluraw.com
  63. ns5.seluraw.com
  64. ns6.seluraw.com
  65.  
  66. Registrant Contact Details:
  67. N/A
  68. Anstice Selby (anstice_selby7250@cyberdude.com)
  69. 12721 Ceder St
  70. Manor
  71. TX,78653
  72. US
  73. Tel. +1.2530260685
  74.  
  75.  
  76. // On hlux...
  77.  
  78. @unixfreaxjp ~]$ while true; do dig +short SELURAW.COM; sleep 1; done
  79. 46.211.55.48
  80. 49.205.210.95
  81. 188.24.88.161
  82. 178.158.186.24
  83. ^C
  84.  
  85. @unixfreaxjp ~]$ while true; do dig +short MOHOGOM.COM; sleep 1; done
  86. 109.194.3.81
  87. 91.189.158.213
  88. 61.227.160.166
  89. 89.136.131.41
  90. 46.109.31.254
  91. ^C
  92.  
  93. ---
  94. #MalwareMustDie!
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement