Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 109.159.119.82 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:109.159.119.82
Hostname:host109-159-119-82.range109-159.btcentralplus.com
AS number:AS2856
AS name:BT-UK-AS BTnet UK Regional network
Country:- GB
First seen:2023-05-03 16:45:53 UTC
Last online:2023-05-11 20:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-05-03 16:45:53109.159.119.822222
QakBot
Offline
Yes (2023-05-03 16:50:12 UTC)2023-05-11 20:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 109.159.119.82. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-05-26 13:46:18037a88bf14b3f787c515266d7adc15f0DLL dlln/a
Quakbot
2023-05-17 11:13:19871212c2b3a995573fe1eec8c0abb58cDLL dlln/a
Quakbot
2023-05-14 18:43:458913a9551b5895bd57370f88274c80c2DLL dllVirustotal results 56.52%
n/a
2023-05-12 20:30:582dd994b669a76c41f3c2f79b35c5480fDLL dlln/a
Quakbot
2023-05-12 12:36:00388f965403bd335b7b04b82ebd7f4c48DLL dlln/a
Quakbot
2023-05-11 14:25:33f06a54b8549fec8b988da37e049fa23eDLL dlln/a
n/a
2023-05-10 05:29:46dcf7dcb5f808ea24b80c9eb7ded7d4e1DLL dlln/a
Quakbot
2023-05-06 04:44:337f051cb928667cf2fe031f6e2731714aDLL dlln/a
Quakbot
2023-05-04 02:47:09ceefd73220492d1c8406dd4460fa1eeaDLL dlln/a
Quakbot