RedLineStealer botnet controller @104.21.95.171

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 104.21.95.171 on port 443 TCP:
$ telnet 104.21.95.171 443
Trying 104.21.95.171…
Connected to 104.21.95.171.
Escape character is ‘^]’

bulkdomimpossible.com 104.21.95.171

Referencing malware samples (MD5 hash):
55622cecc3eae40d50b064e0718eb893 — AV detection: 24 / 67 (35.82%)
5a7f2fa0c18a3f1fdfb08910b5951c7b — AV detection: 46 / 67 (68.66%)
5fb865bdd91d46c9bd96b0cae60dcc86 — AV detection: 38 / 68 (55.88%)
a1c1c6c1bc1eebb3d35ed56242e2a6ee — AV detection: 40 / 68 (58.82%)

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *