njrat botnet controller @15.223.46.207

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 15.223.46.207 on port 5552 TCP:
$ telnet 15.223.46.207 5552
Trying 15.223.46.207…
Connected to 15.223.46.207.
Escape character is ‘^]’

$ nslookup 15.223.46.207
ec2-15-223-46-207.ca-central-1.compute.amazonaws.com

Referencing malware samples:
MD5 b52687cfa1cd78d0fbb93d39130f4d11
MD5 ed546d0832f3d13b4c05a813b7460949

Опубликовано
В рубрике amazon.com

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *