Malware botnet controller @172.67.156.171

The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 172.67.156.171 on port 80 (using HTTP GET):
hXXp://installstats.online/reg.php

$ dig +short installstats.online
172.67.156.171

Referencing malware binaries (MD5 hash):
4ccf1d875a9caa4eca96e6a479fc37b9 — AV detection: 44 / 67 (65.67)
4dfaaf65fa412a86e32ea18265a37b18 — AV detection: 31 / 68 (45.59)
cf35edde149e46ee5dcafa4151dd4a81 — AV detection: 22 / 70 (31.43)

Other malicious domain names hosted on this IP address:
nvidsame.com 172.67.156.171
verticalcable.com 172.67.156.171
dropmb.com 172.67.156.171
omkicks.com 172.67.156.171
installstats.online 172.67.156.171

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *