eric feinberg's Album: Facebook Ad for Counterfeit Oakley Loads Malware

Facebook Paid Sponsored Ad for Counterfeit Oakley Sunglasses Likely Hostile could be Russian Business Network Oakleycityn.tk http://urlquery.net/report.php?id=2499429 Timestamp Source IP Destination IP Severity Alert 2013-05-16 20:05:23 urlQuery Client Internal IP 2 ET CURRENT_EVENTS DNS Query to a .tk domain - Likely Hostile 2013-05-16 20:05:26 urlQuery Client 93.170.52.31 2 ET CURRENT_EVENTS HTTP Request to a *.tk domain 2013-05-16 20:05:26 93.170.52.31 urlQuery Client 3 ET RBN Known Russian Business Network IP (434)

Photo 1 of 5 in Facebook Ad for Counterfeit Oakley Loads Malware

Facebook Paid Sponsored Ad for Counterfeit Oakley Sunglasses Likely Hostile could be Russian Business Network
Facebook Paid Sponsored Ad for Counterfeit Oakley Sunglasses Likely Hostile could be Russian Business Network
Oakleycityn.tk

http://urlquery.net/report.php?id=2499429


Timestamp Source IP Destination IP Severity Alert
2013-05-16 20:05:23 urlQuery Client Internal IP 2 ET CURRENT_EVENTS DNS Query to a .tk domain - Likely Hostile
2013-05-16 20:05:26 urlQuery Client 93.170.52.31 2 ET CURRENT_EVENTS HTTP Request to a *.tk domain
2013-05-16 20:05:26 93.170.52.31 urlQuery Client 3 ET RBN Known Russian Business Network IP (434)