DCRat botnet controller @192.95.55.233

The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

DCRat botnet controller located at 192.95.55.233 on port 80 (using HTTP GET):
hXXp://192.95.55.233/sqlflowerLongpoll/ExternalPhpRequestuniversalWordpress.php

$ nslookup 192.95.55.233
ip233.ip-192-95-55.net

Referencing malware binaries (MD5 hash):
4cf069be997dfededa0d39b70fc3e52f — AV detection: 39 / 67 (58.21)
9096814c6408aa93466c364a30e54f97 — AV detection: 37 / 69 (53.62)

Опубликовано
В рубрике ovh.net

Добавить комментарий

Ваш адрес email не будет опубликован.