polonus
1
Pondus
2
polonus
3
Hi Pondus,
Malware very much alive: http://support.clean-mx.com/clean-mx/viruses.php?ns2=ns3-com.nic.ru&sort=id%20DESC&response=alive
So we need detection for this, as it has been active for over 2829 hours, my friend.
From the safe virus viewer:
DEBUG output created by Wget 1.12 on linux-gnu.
–2014-09-29 18:42:05-- htxp://hqq1f-fiilues.c0qs.pp.ru/download/?q=DayZ%20Standalone&id=33953
Resolving hqq1f-fiilues.c0qs.pp dot ru… failed: Connection timed out.
wget: unable to resolve host address `hqq1f-fiilues.c0qs.pp dot ru’
DEBUG output created by Wget 1.12 on linux-gnu.
–2014-09-29 18:42:05-- htxp://hqq1f-fiilues.c0qs.pp.ru/download/?q=DayZ%20Standalone&id=33953
Resolving hqq1f-fiilues.c0qs.pp dot ru… failed: Connection timed out.
wget: unable to resolve host address `hqq1f-fiilues.c0qs.pp dot ru’
From a private person → http://whois.domaintools.com/c0qs.pp.ru
http://dnscheck.pingdom.com/?domain=C0QS.PP.RU×tamp=1412009177&view=1 Delegation errors.
Main domain OK: http://dnscheck.pingdom.com/?domain=PP.RU×tamp=1412009333&view=1
Hoster: http://www.adelinahost.com/ru/
pol
See: https://www.virustotal.com/nl/url/7c9a5c558466a59aac86d90df74804be3df395187198ce5a09e022bfab6b3e54/analysis/