2014-05-24 - FLASHPACK EK FROM 62.212.128[.]199 - G07A1KXCNP83X1Z21FJVQTW.PARFUMLERI[.]ORG

NOTICE:

ASSOCIATED FILES:

NOTES:

PREVIOUS FLASHPACK EK TRAFFIC ON THIS BLOG:

 

CHAIN OF EVENTS

ASSOCIATED DOMAINS:

TRAFFIC NOTED:

 

PRELIMINARY MALWARE ANALYSIS

 

ALERTS

ALERTS FOR THE INFECTION TRAFFIC (from Sguil on Security Onion):

Emerging Threats ruleset

Sourcefire VRT ruleset

 

Click here to return to the main page.