DCRat botnet controller @35.195.10.252

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 35.195.10.252 on port 443 TCP:
$ telnet 35.195.10.252 443
Trying 35.195.10.252…
Connected to 35.195.10.252.
Escape character is ‘^]’

$ nslookup 35.195.10.252
252.10.195.35.bc.googleusercontent.com

Referencing malware samples (MD5 hash):
2690a6e6e0500ea92e3b222ff60a1c41 — AV detection: 28 / 65 (43.08%)

Опубликовано
В рубрике google.com

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *