RaccoonStealer botnet controller @178.62.127.193

The host at this IP address is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

RaccoonStealer botnet controller located at 178.62.127.193 on port 80 (using HTTP GET):
hXXp://178.62.127.193/charlyl12te

Referencing malware binaries (MD5 hash):
12f02c15330bf864d6570c860fdd3cf5 — AV detection: 24 / 69 (34.78)
520a1cd11757b344b379af15f429cfa0 — AV detection: 24 / 68 (35.29)
5b1acd2b240c202e0ce3fdde8b2ac77c — AV detection: 24 / 68 (35.29)
9a661d615942486a8b5c49a2ae61750e — AV detection: 22 / 67 (32.84)
9c04667afc7fad4370c63ab29f15a38a — AV detection: 23 / 68 (33.82)
a551b546a25dc4a29adfd310c4e1b922 — AV detection: 45 / 68 (66.18)
a6f5ac33717a34ac8f2c7cbfec532500 — AV detection: 44 / 66 (66.67)
b5696b5da855671392828f2f66f2c6bc — AV detection: 25 / 67 (37.31)
bfc9b8f2b2f60b12b11fb07dbaf44bb5 — AV detection: 22 / 67 (32.84)
d1b4cc256d963f6549b9d63fd63c3bb7 — AV detection: 24 / 68 (35.29)

Добавить комментарий

Ваш адрес email не будет опубликован.