Name server involved with the ZBOT Trojan infection.
Resolves these ZBOT distrinution domains:
fileuplarc.com NS ns1.lareconexiondelser.net
downtohole.com NS ns1.lareconexiondelser.net
pmstdl.com NS ns1.lareconexiondelser.net
ns1.lareconexiondelser.net, the server that provides DNS for a malicious Zeus botnet, has been rehosted on several different networks during the past two months. It is no longer on the HostDime.com network. Most recently. it has participated in the botnet's attack on Facebook subscribers, spreading malware through a 'friend request'. See the article at
lareconexiondelser.net is probably controlled by a malicious Zeus botnet that spreads malware, runs phishing scams, and may engage in espionage. It provides DNS for scam domains including oposumcruiser.com
ns1.lareconexiondelser.net currently traces to IP 188.8.131.52, hosted by HostDime.com, Inc in the USA