Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 136.244.98.80 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:136.244.98.80
Hostname:136.244.98.80.vultrusercontent.com
AS number:AS20473
AS name:AS-CHOOPA
Country:- NL
First seen:2023-11-06 15:25:32 UTC
Last online:2023-11-08 10:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-11-06 15:25:32136.244.98.8013783
Pikabot
Offline
Yes (2023-11-06 15:30:07 UTC)2023-11-08 10:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 136.244.98.80. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-11-09 15:10:141544bc5dd75f8b1bb0e42fef7091ae50DLL dlln/a
Pikabot
2023-11-08 15:41:077345ed142398c193ed74263935f6dae8DLL dllVirustotal results 39.44%
Pikabot
2023-11-08 15:29:048d407ea41312df35613970a5198ad681DLL dllVirustotal results 21.13%
Pikabot
2023-11-07 09:39:167c4cf703b5cea69c636fa20269600d86DLL dlln/a
Pikabot
2023-11-06 21:15:190765c85d155fb6b73a4246ba6dcb52bdDLL dllVirustotal results 8.57%
Pikabot
2023-11-06 14:10:58a6d4a12f1c3c1d68ac3483f546144328DLL dlln/a
n/a