Vjw0rm botnet controller @23.102.1.5

The host at this IP address is obviously operated by cybercriminals. It is running a malware botnet controller which is being used to control infected computers (bots) around the globe using a trojan horse.

Malware botnet controller located at 23.102.1.5 on port 6130 TCP:
$ telnet 23.102.1.5 6130
Trying 23.102.1.5…
Connected to 23.102.1.5.
Escape character is ‘^]’

$ dig +short dingspread.duckdns.org
23.102.1.5

Referencing malware samples:
MD5 d27a6555f01b023f146f6662d01070b3

Добавить комментарий

Ваш адрес email не будет опубликован. Обязательные поля помечены *