RedLineStealer botnet controller @18.190.26.16

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 18.190.26.16 on port 61391 TCP:
$ telnet 18.190.26.16 61391
Trying 18.190.26.16…
Connected to 18.190.26.16.
Escape character is ‘^]’

$ nslookup 18.190.26.16
ec2-18-190-26-16.us-east-2.compute.amazonaws.com

Referencing malware samples (MD5 hash):
3ad67010f1d4a291524a848856543ec8 — AV detection: 36 / 69 (52.17%)

Опубликовано
В рубрике amazon.com

Добавить комментарий

Ваш адрес email не будет опубликован.