Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 108.32.72.145 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:108.32.72.145
Hostname:pool-108-32-72-145.pitbpa.fios.verizon.net
AS number:AS701
AS name:UUNET
Country:- US
First seen:2023-05-11 23:03:05 UTC
Last online:2023-07-04 19:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-05-11 23:03:05108.32.72.145443
QakBot
Offline
Yes (2023-05-11 23:05:03 UTC)2023-07-04 19:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 108.32.72.145. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-07-04 01:47:430cee1b1b2c7e92d1fcb856b5aa7ee44bDLL dlln/a
Quakbot
2023-07-03 23:20:010fad8164dab8a71bbd0ed76ab4e05adcDLL dlln/a
Quakbot
2023-07-02 05:03:5621ef348c77c0d8c7a7b325eff72680b9DLL dlln/a
Quakbot
2023-06-25 10:55:1821d551956c5d48ebda72f9688701a646DLL dllVirustotal results 51.43%
Quakbot
2023-06-24 16:29:08dfff2320273555d1a2c625b57d8aa4e3DLL dlln/a
Quakbot
2023-06-23 18:54:5076dc584f59c0202b5dcfd70923d94243DLL dlln/a
Quakbot