AsyncRAT botnet controller @94.130.208.107

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 94.130.208.107 on port 2021 TCP:
$ telnet 94.130.208.107 2021
Trying 94.130.208.107…
Connected to 94.130.208.107.
Escape character is ‘^]’

$ nslookup 94.130.208.107
static.107.208.130.94.clients.your-server.de

Referencing malware samples:
MD5 5bdea18768bd80a86b23c91ba733ca37

Опубликовано
В рубрике hetzner.de

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *