Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 109.50.143.218 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:109.50.143.218
Hostname:a109-50-143-218.cpe.netcabo.pt
AS number:AS2860
AS name:NOS_COMUNICACOES
Country:- PT
First seen:2023-04-05 12:32:05 UTC
Last online:2023-04-15 08:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-04-05 12:32:05109.50.143.2182222
QakBot
Offline
Yes (2023-04-05 12:35:05 UTC)2023-04-15 08:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 109.50.143.218. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-04-28 18:24:4649fdb3f36311cf7330827eeaaa719b96DLL dllVirustotal results 65.71%
Quakbot
2023-04-28 10:10:088765e5a7654f4c706c5e0f2e2837afceDLL dlln/a
Quakbot
2023-04-25 12:42:37338dc29b0873f3e41f981369ca3c5c0aDLL dlln/a
Quakbot
2023-04-13 16:43:55e60a531aa98e6bfa9ebbe9470b0cff36DLL dlln/a
Quakbot
2023-04-06 09:23:522818956e1e90d8e39619e38c37e72f9aDLL dlln/a
Quakbot