Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 178.254.161.250 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:178.254.161.250
Hostname:free-161-250.mediaworksit.net
AS number:AS28964
AS name:ORIONTELEKOMTIM-AS
Country:- RS
First seen:2021-04-22 22:04:30 UTC
Last online:2021-05-05 10:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-04-22 22:04:30178.254.161.250443
TrickBot
Offline
No2021-05-05 10:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 178.254.161.250. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-05-05 15:53:05c79115f2a0e950bd25fef3cb59a8cc72Executable exen/a
TrickBot