TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

MSN Bot machines infected with Conficker?

2 pointsby dz0nyalmost 10 years ago
I&#x27;ve been analyzing traffic with Heka and noticed that right after the bot visited site, it got bunch of brute-forcing attempts to Worpdress site. So the first tool I used was https:&#x2F;&#x2F;www.ipalyzer.com&#x2F;207.46.13.105 which reports that this IP is owned by Microsoft and that it is listed in XBL blocklist. And then I got to WTF part http:&#x2F;&#x2F;cbl.abuseat.org&#x2F;lookup.cgi?ip=207.46.13.105, is this even possible? And just to be sure that this isn&#x27;t Azure customer I checked http:&#x2F;&#x2F;www.microsoft.com&#x2F;en-us&#x2F;download&#x2F;confirmation.aspx?id=41653 and http:&#x2F;&#x2F;viewdns.info&#x2F;whois&#x2F;?domain=207.46.13.105.<p>Anyone encountered something similar?

no comments

no comments