Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 143.0.208.20 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:143.0.208.20
Hostname:143.0.208.20.ajnet.net.br
AS number:AS264072
AS name:ANTONIO G DE SOUSA JUNIOR - ME
Country:- BR
First seen:2021-06-28 15:31:43 UTC
Last online:2021-07-12 17:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-06-28 15:31:43143.0.208.20443
TrickBot
Offline
2021-07-12 17:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 143.0.208.20. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-08-02 20:22:08d8b6f030427bb936a2175c7b56c7bd2aExecutable exeVirustotal results 36.76%
TrickBot
2021-07-12 05:59:291435e73d130badac3c26811f5d9b54dfDLL dlln/a
n/a
2021-07-09 17:43:59c0079ecfea3cc0ac3540d9983364f651DLL dllVirustotal results 62.12%
n/a
2021-07-03 14:19:20d60f4e0e8033297ea15f31507ab1b4c5DLL dllVirustotal results 39.13%
n/a
2021-07-02 13:22:23c923c8eb818a36d7bb06ab702af50d15DLL dllVirustotal results 20.59%
n/a
2021-07-01 14:29:26bb5fa7849c95aeb695cb0c0e30e24d05DLL dllVirustotal results 29.41%
n/a
2021-07-01 13:54:1585632f6e4ce7f56a522d0796a6faa327DLL dlln/a
TrickBot