DCRat botnet controller @34.68.50.44

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 34.68.50.44 on port 8888 TCP:
$ telnet 34.68.50.44 8888
Trying 34.68.50.44…
Connected to 34.68.50.44.
Escape character is ‘^]’

$ nslookup 34.68.50.44
44.50.68.34.bc.googleusercontent.com

$ dig +short 1593572468.ddns.net
34.68.50.44

Referencing malware samples (MD5 hash):
ee4e8fa33f9c8e228576c672c47dbc9d — AV detection: 28 / 69 (40.58%)

Опубликовано
В рубрике google.com

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *