Brute Ratel C4 Detected – 170[.]254[.]185[.]1:443

Brute Ratel C4 Detection Alerts

The Information provided at the time of posting was detected as “Brute Ratel C4”. Depending on when you are viewing this article, it may no longer be the case and could be determined as being a false positive. Please do your own additional validation. – RedPacket Security

TimeStamp 2022-07-08T02:21:41.825806

brute ratel c4
Brute Ratel C4

Cloud Information

Provider
Region
Service
ASNAS262369

Domain Information

Domainspolati.com.br

HTTP Information

Redirects
Headers Hash-1900477081
Host170[.]254[.]185[.]1
HTML404 file not found
HTML Hash-1957161625
Location/
RobotsN/A
Robots HashN/A
Security TXTN/A
Security TXT HashN/A
ServerApache
SitemapN/A
Sitemap hashN/A
Status200
TitleN/A

Location Information

Area CodeN/A
CitySaquarema
Country CodeBR
Country NameBrazil
Latitude-22.92
Longitude-42.51028
Region CodeN/A

SSL Information

Cert Fingerprint SHA103b4d66a7a540a01e13142e623958b3e1d6b822b
Cert Fingerprint SHA256e2c00c85e3f94683b430c5d217908f781d201a7af6f277b0e850befe66c83ada
IssuerLet’s Encrypt
Subject CNlocal.polati.com.br
ExpiredN/A
CipherTLS_AES_256_GCM_SHA384
Version

Tag Information

Tags
Tags
Tags
Tags

Host Information

OSN/A
Transporttcp
DataHTTP/1.1 200 OK Date: Fri, 08 Jul 2022 02:21:41 GMT Server: Apache Last-Modified: Tue, 22 Mar 2022 11:41:53 GMT ETag: “12-5dacd19750d14” Accept-Ranges: bytes Content-Length: 18 Content-Type: text/html
Port443
IP170[.]254[.]185[.]1


A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on Patreon using the button below

Digital Patreon Wordmark FieryCoralv2

To keep up to date follow us on the below channels.

join
Click Above for Telegram
discord
Click Above for Discord
reddit
Click Above for Reddit