Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 161.132.187.158 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:161.132.187.158
Hostname:n/a
AS number:AS3132
AS name:Red Cientifica Peruana
Country:- PE
First seen:2021-04-06 15:56:03 UTC
Last online:2021-04-11 18:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-04-06 15:56:03161.132.187.158447
TrickBot
Online
2021-04-11 18:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 161.132.187.158. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-04-11 06:39:541bb9dbaf8ddf781f9f495f1982981424Executable exen/a
TrickBot
2021-04-09 14:15:110b7c11713bfc111446059427ce81a8c6Word file xlsn/a
TrickBot
2021-04-08 16:01:37b304b0f0fed483cc72c977c99122b70aDLL dllVirustotal results 10.29%
TrickBot
2021-04-06 15:27:127df0611cd75fa4c02b29070728c37247DLL dllVirustotal results 8.96%
TrickBot