Malware botnet controller @167.99.224.180

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 167.99.224.180 on port 443:
$ telnet 167.99.224.180 443
Trying 167.99.224.180…
Connected to 167.99.224.180.
Escape character is ‘^]’

Malicious domains observed on this IP address:
accountreview-binance.com. 600 IN A 167.99.224.180
ch-accounts-binance.com. 600 IN A 167.99.224.180
ch-compliance-binance.com. 600 IN A 167.99.224.180
ch-investigation-binance.com. 600 IN A 167.99.224.180
dnb-mobilbankno.com. 600 IN A 167.99.224.180
es-blockchain.com. 600 IN A 167.99.224.180
espana-blockchain.com. 600 IN A 167.99.224.180
m-sparebank.info. 600 IN A 167.99.224.180
mmc-ventures.com. 600 IN A 167.99.224.180
nordea-norge.info. 600 IN A 167.99.224.180
nordeafi-peruutus.com. 600 IN A 167.99.224.180
opfi-peruutus.com. 600 IN A 167.99.224.180
ph-accounts-binance.com. 600 IN A 167.99.224.180
rebate-binance.com. 600 IN A 167.99.224.180
tesla-santander.com. 600 IN A 167.99.224.180

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *