DCRat botnet controller @89.108.102.163

The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

DCRat botnet controller located at 89.108.102.163 on port 80 (using HTTP GET):
hXXp://89.108.102.163/HttpprocessdefaultWindowsgenerator.php

$ nslookup 89.108.102.163
89-108-102-163.cloudvps.regruhosting.ru

Referencing malware binaries (MD5 hash):
e9589c076fc51d358fe5eece0b2381da — AV detection: 31 / 71 (43.66)

Опубликовано
В рубрике reg.ru

Добавить комментарий

Ваш адрес email не будет опубликован.