Monday, 17 May 2010 22:02 in Blogs, Reports by Jart Armin
At 9:00am EST on Friday May14th AS50896 PROXIEZ lost its ability to infect the Internet. To avoid confusion there were ‘unsuccessful’ attempts to reconnect on Saturday & Sunday May 15/16th. This is where there may have been reports of connections to bots and malware being still alive.
The upstream peer AS50818 DIGERNET was also disconnected from the Internet @ 10:30am EST on Friday May14th. AS50908 EVAUA (InfoPlus Ltd.) is currently attempting to serve the Zeus C&Cs as a replacement for Proxiez.
AS50896 PROXIEZ – Issued by RIPE and first active April 19th 2010 and AS50908 EVAUA first active May17th 2010 again leads to the question the issuance of ASNs and IP ranges by RIPE which are immediately utilized for crime servers.
Mini Report in PDF can be downloaded here (registration required).
| < Prev | Next > |
|---|
Recent Articles by Jart Armin :
Latest Blogs
-
Cybercrime-Friendly Hosts or Industry Victims?HostExploit presents the latest report on the Top 50 Bad Hosts and Networks,...
-
Bulletproof Cybercrime Hosting & the CloudHostExploit is pleased to present the next report in the Top 50 Bad Hosts &...
-
UK Riots and the Internet: How They Destroyed LivesRecently in the UK, close to my home, there have been riots. Hearing stories...
- 1
- 2
- 3