Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 139.255.116.42 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:139.255.116.42
Hostname:ln-static-139-255-116-42.link.net.id
AS number:AS9905
AS name:LINKNET-ID-AP Linknet ASN
Country:- ID
First seen:2021-04-22 22:04:32 UTC
Last online:2021-04-24 12:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-04-22 22:04:32139.255.116.42443
TrickBot
Offline
2021-04-24 12:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 139.255.116.42. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-05-05 19:40:24b301c80302f30b1116a0eaf38a31a58aExecutable exen/a
TrickBot
2021-05-05 15:23:07151066a233bd02a2de235891907a9accExecutable exeVirustotal results 54.29%
TrickBot
2021-05-05 12:53:4043bb4560a4828d3e1dec4b74e16eb460Executable exeVirustotal results 32.86%
TrickBot
2021-05-05 08:20:43c183bbecdd2e81ed01255097cc03a7dfExecutable exeVirustotal results 32.86%
n/a
2021-05-04 22:20:170a37df7cbfe035c9638f8245e99bcee1Executable exen/a
TrickBot
2021-05-04 18:36:443b28a8bf430f31beec6182df76abdfd1Executable exen/a
TrickBot
2021-05-04 18:01:27e541c383a33947e5ca32d28d83a09edfExecutable exen/a
TrickBot
2021-05-04 07:10:17d6b62823789bd2265510a0bf4f3f8d91Executable exen/a
n/a
2021-05-04 04:39:1538a4df502d7e39566ff59ed810e12904Executable exen/a
n/a
2021-04-29 05:00:55bb36eec5500ed34f2307a0b8dba35e08DLL dllVirustotal results 13.04%
n/a