Malware botnet controller @152.67.253.163

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 152.67.253.163 on port 5300 TCP:
$ telnet 152.67.253.163 5300
Trying 152.67.253.163…
Connected to 152.67.253.163.
Escape character is ‘^]’

Referencing malware samples (MD5 hash):
151fdd0298923efcc7b12ec5b1060611 — AV detection: 41 / 68 (60.29%)
8a1da64b95ff7265d2e0425d347acfbf — AV detection: 20 / 67 (29.85%)
8e3f534f64c93aa55f6374310e255c44 — AV detection: 31 / 68 (45.59%)
9331c3180d5223cf383a55e77390b787 — AV detection: 23 / 66 (34.85%)
c6b73ce7cfd3a56ca87b0f107eb3280f — AV detection: 39 / 68 (57.35%)
d43e3ae5c7b859525aebdb7c248cb6e1 — AV detection: 16 / 67 (23.88%)

Опубликовано
В рубрике oracle.com

Добавить комментарий

Ваш адрес email не будет опубликован.