Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 103.123.223.141 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:103.123.223.141
Hostname:n/a
AS number:AS138329
AS name:KWS-AS-AP Kenstar Web Solutions Private Limited
Country:- IN
First seen:2023-04-06 05:52:18 UTC
Last online:2023-04-20 07:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-04-06 05:52:18103.123.223.141443
QakBot
Offline
Yes (2023-04-06 05:55:03 UTC)2023-04-20 07:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 103.123.223.141. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-04-29 20:21:1694df1fde10ec87c0c9e5311fe0952028DLL dlln/a
Quakbot
2023-04-25 03:57:156b41770eed585cbea189476829601bd4DLL dlln/a
Quakbot
2023-04-23 15:00:51fe292b3400763e5b86bb0e10c0d7682dDLL dllVirustotal results 65.71%
Quakbot
2023-04-22 20:40:37dd6ac12a60be3efa71bafe28b5935403DLL dlln/a
Quakbot
2023-04-22 11:12:10432e378af0366dc1ca954f935c9951b4DLL dlln/a
Quakbot
2023-04-09 06:18:570a4492ddc485124e121f37e9a5de83d2DLL dllVirustotal results 58.57%
Quakbot
2023-04-09 06:12:39065aac8ce216a3d6890ada0a80c517e8DLL dllVirustotal results 58.57%
Quakbot
2023-04-07 05:36:18b00dc5d8727d35a22e380cbc7ad5fcd9DLL dllVirustotal results 57.14%
Quakbot
2023-04-06 05:54:43eae27495f6bcea7052c4986f974b2decDLL dllVirustotal results 49.28%
Quakbot