Brute Ratel C4 Detected – 2[.]37[.]28[.]171:9002

The Information provided at the time of posting was detected as “Brute Ratel C4”. Depending on when you are viewing this article, it may no longer be the case and could be determined as being a false positive. Please do your own additional validation. – RedPacket Security

TimeStamp 2022-12-03T20:40:59.510483

brute ratel c4
Brute Ratel C4

Cloud Information

Provider
Region
Service
ASNAS30722

Domain Information

Domainsvodafonedsl.it

HTTP Information

Redirects
Headers Hash-915182599
Host2[.]37[.]28[.]171
HTML404 file not found
HTML Hash-1957161625
Location/
RobotsN/A
Robots HashN/A
Security TXTN/A
Security TXT HashN/A
ServerN/A
SitemapN/A
Sitemap hashN/A
Status404
TitleN/A

Location Information

Area CodeN/A
CityBussolengo
Country CodeIT
Country NameItaly
Latitude45.46903
Longitude10.85371
Region Code34

SSL Information

Cert Fingerprint SHA1d63bdca51a09240fc38c25c66ec7b2ffb971b937
Cert Fingerprint SHA25681c77bd4c8a27bb5f8722b309f079c34e148f70f2136ac08a03398dd99effb1f
IssuerLet’s Encrypt
Subject CNfrancodp.dyndns.tv
ExpiredN/A
CipherTLS_AES_256_GCM_SHA384
Version

Tag Information

Tagsc2
Tags
TagsN/A
TagsN/A

Host Information

OSN/A
Transporttcp
DataHTTP/1.1 404 Not Found X-Powered-By: Express Content-Type: text/html Date: Sat, 03 Dec 2022 20:40:59 GMT Connection: keep-alive Keep-Alive: timeout=5 Transfer-Encoding: chunked
Port9002
IP2[.]37[.]28[.]171


A considerable amount of time and effort goes into maintaining this website, creating backend automation and creating new features and content for you to make actionable intelligence decisions. Everyone that supports the site helps enable new functionality.

If you like the site, please support us on Patreon using the button below

Digital Patreon Wordmark FieryCoralv2

To keep up to date follow us on the below channels.

join
Click Above for Telegram
discord
Click Above for Discord
reddit
Click Above for Reddit
hd linkedin
Click Above For LinkedIn