RedLineStealer botnet controller @62.182.156.182

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 62.182.156.182 on port 21588 TCP:
$ telnet 62.182.156.182 21588
Trying 62.182.156.182…
Connected to 62.182.156.182.
Escape character is ‘^]’

Referencing malware samples (MD5 hash):
3209cd6ac608bb81cdf6cc6a844c5110 — AV detection: 18 / 69 (26.09%)
5a3510e6162885ee6b3bc1189edac435 — AV detection: 18 / 67 (26.87%)
b1aaed74c9371ef1d546e89cc68b657e — AV detection: 41 / 62 (66.13%)
e8f4b273743e33b8ea72d015ba7ef409 — AV detection: 28 / 68 (41.18%)

Опубликовано
В рубрике selectel.ru

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *