Brute Ratel C4 Detected – 185[.]193[.]125[.]142:443

Brute Ratel C4 Detection Alerts

The Information provided at the time of posting was detected as “Brute Ratel C4”. Depending on when you are viewing this article, it may no longer be the case and could be determined as being a false positive. Please do your own additional validation. – RedPacket Security

TimeStamp 2022-06-26T19:00:54.679401

brute ratel c4
Brute Ratel C4

Cloud Information

Provider
Region
Service
ASNAS39287

Domain Information

Domainsnjalla.net

HTTP Information

Redirects
Headers Hash-849913362
Host185[.]193[.]125[.]142
HTML404 file not found
HTML Hash-1957161625
Location/
RobotsN/A
Robots HashN/A
Security TXTN/A
Security TXT HashN/A
Servernginx/1.18.0 (Ubuntu)
SitemapN/A
Sitemap hashN/A
Status200
TitleN/A

Location Information

Area CodeN/A
CityHelsinki
Country CodeFI
Country NameFinland
Latitude60.16952
Longitude24.93545
Region Code18

SSL Information

Cert Fingerprint SHA1843274bd3cf511973167061b7845e3fc24e0a338
Cert Fingerprint SHA2567d0263479621da16d074c01a5511ec091bcbf60c6b4f7e9b8d1c9f3d2f3a1293
IssuerLet’s Encrypt
Subject CNmftsecure.com
ExpiredN/A
CipherTLS_AES_256_GCM_SHA384
Version

Tag Information

Tags
Tags
Tags
Tags

Host Information

OSN/A
Transporttcp
DataHTTP/1.1 200 OK Server: nginx/1.18.0 (Ubuntu) Date: Sun, 26 Jun 2022 19:00:54 GMT Content-Type: text/plain; charset=utf-8 Content-Length: 18 Connection: keep-alive
Port443
IP185[.]193[.]125[.]142


A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on Patreon using the button below

Digital Patreon Wordmark FieryCoralv2

To keep up to date follow us on the below channels.

join
Click Above for Telegram
discord
Click Above for Discord
reddit
Click Above for Reddit