Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 158.220.80.167 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:158.220.80.167
Hostname:vmd129687.contaboserver.net
AS number:AS51167
AS name:CONTABO
Country:- GB
First seen:2024-02-08 19:20:47 UTC
Last online:2024-02-09 22:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2024-02-08 19:20:47158.220.80.1672967
Pikabot
Offline
Yes (2024-02-08 19:40:04 UTC)2024-02-09 22:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 158.220.80.167. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2024-02-15 22:51:244949780a7b89301e69ae7bf64cfb88fdExecutable exen/a
n/a
2024-02-09 15:30:247c56576c8c26baa5a69ac88169f04b1eExecutable exeVirustotal results 1.41%
n/a
2024-02-09 14:58:16b1fb19cb429f231a45b83437d5e59a71Executable exen/a
n/a
2024-02-08 17:17:15fd379c5ed778ea1000da0b8c9458f7f8Executable exen/a
Pikabot