Malware botnet controller @194.87.185.128

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 194.87.185.128 on port 443:
$ telnet 194.87.185.128 443
Trying 194.87.185.128…
Connected to 194.87.185.128.
Escape character is ‘^]’

Malicious domains observed on this IP address:
accountreview-binance.com. 600 IN A 194.87.185.128
ch-compliance-binance.com. 600 IN A 194.87.185.128
ch-accounts-binance.com. 600 IN A 194.87.185.128
ch-compliance-binance.com. 600 IN A 194.87.185.128
ch-investigation-binance.com. 600 IN A 194.87.185.128
dnb-mobilbankno.com. 600 IN A 194.87.185.128
es-blockchain.com. 600 IN A 194.87.185.128
espana-blockchain.com. 600 IN A 194.87.185.128
m-sparebank.info. 600 IN A 194.87.185.128
mmc-ventures.com. 600 IN A 194.87.185.128
nordea-norge.info. 600 IN A 194.87.185.128
nordeafi-peruutus.com. 600 IN A 194.87.185.128
opfi-peruutus.com. 600 IN A 194.87.185.128
ph-accounts-binance.com. 600 IN A 194.87.185.128
tesla-santander.com. 600 IN A 194.87.185.128

Опубликовано
В рубрике selectel.ru

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *