« BotnetWeb: A Collection of Heterogeneous Botnets.. | Main | Hexzone, RansomWare and, Finjan »

2009.04.22

TrackBack

TrackBack URL for this entry:
http://www.typepad.com/services/trackback/6a00d835018afd53ef011570366ef0970b

Listed below are links to weblogs that reference RansomWare on the loose..:

Comments

Feed You can follow this conversation by subscribing to the comment feed for this post.

Found two other related domains that resolve to the same IP as ogggooogoggoog.com. They are 9aga999a9gg99a.com and zsgszzzszggzzs.com. File requests are a little different, (getid.php?getcode=1&wid=53&client=Explorer.EXE&u=1), but it's obviously the same family of ransomeware.

Do we know who's providing the SMS shortcode number?

in last screenshot the "strange" language is russian but in wrong encoding.

The comments to this entry are closed.