ArkeiStealer botnet controller @82.148.18.132

The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

ArkeiStealer botnet controller located at 82.148.18.132 on port 80 (using HTTP POST):
hXXp://file-file-host4.com/tratata.php

$ dig +short file-file-host4.com
82.148.18.132

$ nslookup 82.148.18.132
refrigeramentos01.superservidores.cloud

Referencing malware binaries (MD5 hash):
b48c4ccd785b4915891f9986ec3d69c6 — AV detection: 42 / 69 (60.87)

Other malicious domain names hosted on this IP address:
host-data-coin-11.com 82.148.18.132
file-file-host4.com 82.148.18.132
data-file-data-7.com 82.148.18.132
privacytools-foryou777.com 82.148.18.132

Опубликовано
В рубрике selectel.ru

Добавить комментарий

Ваш адрес email не будет опубликован.