DCRat botnet controller @37.46.128.148

The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

DCRat botnet controller located at 37.46.128.148 on port 80 (using HTTP GET):
hXXp://37.46.128.148/videoprocessordefaultGeneratorDownloads.php

$ nslookup 37.46.128.148
paynestudiosde.fvds.ru

Referencing malware binaries (MD5 hash):
57e6dcef9c3719c47b0ee0e6e09c8097 — AV detection: 37 / 66 (56.06)

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *