BitRAT botnet controller @20.80.15.232

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 20.80.15.232 on port 2222 TCP:
$ telnet 20.80.15.232 2222
Trying 20.80.15.232…
Connected to 20.80.15.232.
Escape character is ‘^]’

$ dig +short resereved.nerdpol.ovh
20.80.15.232

Referencing malware samples:
MD5 6d4321a97253888a16a30338334ba0e2
MD5 db50bae866c3535549c653b500ed51d5

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *