eric feinberg's Album: Facebook Ad for Counterfeit Oakley Loads Malware

Facebook Paid Sponsored Ad for Counterfeit Oakley Sunglasses Likely Hostile could be Russian Business Network Timestamp Source IP Destination IP Severity Alert 2013-05-16 20:05:23 urlQuery Client Internal IP 2 ET CURRENT_EVENTS DNS Query to a .tk domain - Likely Hostile 2013-05-16 20:05:26 urlQuery Client 2 ET CURRENT_EVENTS HTTP Request to a *.tk domain 2013-05-16 20:05:26 urlQuery Client 3 ET RBN Known Russian Business Network IP (434)