Loki botnet controller @172.67.169.38

The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Loki botnet controller located at 172.67.169.38 on port 80 (using HTTP POST):
hXXp://utensilsprod.xyz/five/fre.php

$ dig +short utensilsprod.xyz
172.67.169.38

Referencing malware binaries (MD5 hash):
5ce9bc025711280fa8e91f12fa39e5ec — AV detection: 14 / 67 (20.90)
6ecaac7059701fe6ea95aa55f75b3ce4 — AV detection: 12 / 65 (18.46)

Other malicious domain names hosted on this IP address:
technadvice.com 172.67.169.38
search.forkly.com 172.67.169.38
utensilsprod.xyz 172.67.169.38

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *