Advertisement
unixfreaxjp

BOXIFY.ME FILE SHARING IS USED AS MALWARE PARK PLACE

Oct 14th, 2012
116
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
  1. ===============================
  2. BOXIFY.ME FILE SHARING IS USED AS MALWARE PARK PLACE
  3. (The cloud model of infections)
  4. Discovered : #MalwareMustDie!
  5. Infector as per 2012, Oct, 14th
  6. Message: Clean these ! Many dangerous trojan are parked there!!
  7. I Scanned only the first 5 samples, and pasted the first 3 VT result,,
  8. Someone in US must concern this, and follow the case.
  9. Inform GODADDY or the DOMAIN owner is per below info..
  10. ================================
  11.  
  12. uploads.boxify.me/86994/iConfig.1.mid?1343764805 (Trojan/Bankerz) VT: https://www.virustotal.com/file/e0e9567705a95561994a9e5e70b133f8a409148f1e49035434d10233e53343b8/analysis/
  13. uploads.boxify.me/92416/fb02ed62d7d98697e2d27c.scr?1349122046 (Buzus/Koobface) VT:https://www.virustotal.com/file/d55d19cb183c4498aebdea7b4bc25a18d63175215651c10a25d91f91ba50048a/analysis/
  14. uploads.boxify.me/90930/Santa2012.mp3 VT: https://www.virustotal.com/file/f521d1891f274094bc99d4248c4f16debe5449c2e6527ea06afc712540ae7619/analysis/1350210582/
  15. uploads.boxify.me/91327/ShowBlock.zip
  16. uploads.boxify.me/90928/pegaii12.mp3
  17. uploads.boxify.me/84474/tentar.mid
  18. uploads.boxify.me/92659/NFT-Eletronica-N_3654.Pdf.zip?1349407559
  19. uploads.boxify.me/92416/fb02ed62d7d98697e2d27c.scr?1349122046
  20. uploads.boxify.me/85149/mdaa.hlp
  21. uploads.boxify.me/87691/iConfig.7.hlp?1344893313u
  22. uploads.boxify.me/90829/tandera.bmp
  23.  
  24. ----------------info------------------
  25. Domain ID:D1970374-ME
  26. Domain Name:BOXIFY.ME
  27. Domain Create Date:21-Apr-2011 11:10:53 UTC
  28. Domain Last Updated Date:03-May-2012 20:33:55 UTC
  29. Domain Expiration Date:21-Apr-2013 11:10:53 UTC
  30. Last Transferred Date:
  31. Sponsoring Registrar:GoDaddy.com, LLC R41-ME
  32. Created by:GoDaddy.com, LLC R41-ME
  33. Last Updated by Registrar:GoDaddy.com, LLC R41-ME
  34. Domain Status:CLIENT DELETE PROHIBITED
  35. Domain Status:CLIENT RENEW PROHIBITED
  36. Domain Status:CLIENT TRANSFER PROHIBITED
  37. Domain Status:CLIENT UPDATE PROHIBITED
  38. Registrant ID:CR81142309
  39. Registrant Name:Loren Burton
  40. Registrant Organization:
  41. Registrant Address:1816 S. Cardinal Court
  42. Registrant Address2:
  43. Registrant Address3:
  44. Registrant City:Libertyville
  45. Registrant State/Province:Illinois
  46. Registrant Country/Economy:US
  47. Registrant Postal Code:60048
  48. Registrant Phone:+1.8477743950
  49. Registrant Phone Ext.:
  50. Registrant FAX:
  51. Registrant FAX Ext.:
  52. Registrant E-mail:lorendburton@gmail.com
  53.  
  54. #MalwareMustDie!
Advertisement
RAW Paste Data Copied
Advertisement