| ▲ | lantry 9 hours ago | |||||||
> Side note: Why use a raw IP address? If anything, this screams “malware.” At least register a decoy domain like lint-checker.com or jenkins-ci-runner.net. If the threat actors who wrote this are reading: take notes people! Maybe they don't want to give any identifying info to the domain registrar? Or just minimizing their online presence? | ||||||||
| ▲ | HPsquared 9 hours ago | parent | next [-] | |||||||
That's probably the reason bare IP addresses are associated with sketchy stuff. | ||||||||
| ▲ | cromka 8 hours ago | parent | prev | next [-] | |||||||
Or possibly these hosts fell victims of their malware, too, and see now used as proxies. | ||||||||
| ||||||||
| ▲ | CITIZENDOT 9 hours ago | parent | prev [-] | |||||||
fair point | ||||||||