Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 154.38.185.136 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:154.38.185.136
Hostname:vmd124883.contaboserver.net
AS number:AS40021
AS name:NL-811-40021
Country:- US
First seen:2023-12-21 16:04:54 UTC
Last online:2023-12-22 06:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-12-21 16:04:54154.38.185.1365243
Pikabot
Offline
Yes (2023-12-21 18:35:08 UTC)2023-12-22 06:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 154.38.185.136. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2024-01-16 16:48:37527774acc9e68d3274e0806873b5c88dDLL dllVirustotal results 64.62%
n/a
2023-12-29 19:49:51a0d4ce04c0a98e0da45f319184a6f7e6DLL dllVirustotal results 42.65%
n/a
2023-12-29 18:54:250d4146b8de943937ef8aacf372cad191DLL dllVirustotal results 57.53%
n/a
2023-12-28 04:58:17fb9399cbdbc9e1670def6d49f114d7d7DLL dllVirustotal results 50.70%
n/a
2023-12-27 19:51:2432ced4c33186c30a9260f7817a53a162DLL dllVirustotal results 60.27%
n/a
2023-12-27 19:11:16107c9ef880967c9432d2259037ed056fDLL dllVirustotal results 45.31%
n/a
2023-12-22 15:23:107b7b24fe695fcbe41b807f7b8176d57dDLL dlln/a
n/a
2023-12-22 14:32:145eafd7bcfc4590de7b03c0579df2e805DLL dlln/a
n/a