Alter IW Back Door
alterIWnet administrators are USING their dedicated server admins' computers to launch DDoS attacks. Or there is some exploit that just happens to include a UDP flooder.. yeah, explain that, aIW.
We must bring this to light.
(Mind you, this is not the first time Max has used the alterIWnet servers to launch DDoS attacks. And for some reason this suspicious executable sends a call home packet to Bulgaria. Strange. And the IP is the same one Max used to login to our forums. Yet strange again!)
Also, iw4mp.exe connects to a SUSPICIOUS IP IN BULGARIA on port 28940. (The IP is actually marked as virus-herding by many firewalls, including Malwarebytes, that's how I know)
Also, this "suspicious IP" is Max's IP. He signed up on our forum some time ago and validated his email (max@alteriw.net) and the IP matches.
Solution:
Stop playing alterIWnet and spread this message.
Proof:
alterIWnet • View topic - [Exploit] Server utilizing large amount of bandwidth
alterIWnet • View topic - Question: Traffic?
We must bring this to light.
(Mind you, this is not the first time Max has used the alterIWnet servers to launch DDoS attacks. And for some reason this suspicious executable sends a call home packet to Bulgaria. Strange. And the IP is the same one Max used to login to our forums. Yet strange again!)
Also, iw4mp.exe connects to a SUSPICIOUS IP IN BULGARIA on port 28940. (The IP is actually marked as virus-herding by many firewalls, including Malwarebytes, that's how I know)
Also, this "suspicious IP" is Max's IP. He signed up on our forum some time ago and validated his email (max@alteriw.net) and the IP matches.
Solution:
Stop playing alterIWnet and spread this message.
Proof:
alterIWnet • View topic - [Exploit] Server utilizing large amount of bandwidth
alterIWnet • View topic - Question: Traffic?


)))