Malware Botnet C&C
You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 181.196.148.42 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.
Database Entry
IP address: | 181.196.148.42 |
---|---|
Hostname: | 42.148.196.181.static.anycast.cnt-grms.ec |
AS number: | AS28006 |
AS name: | CORPORACION NACIONAL DE TELECOMUNICACIONES - CNT EP |
Country: | EC |
First seen: | 2021-12-09 07:06:06 UTC |
Last online: | 2021-12-09 19:xx:xx UTC |
Botnet C&Cs
The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.
First seen (UTC) | IP address | Port | Malware | Status | Abuse complaint sent? | Last online (UTC) |
---|---|---|---|---|---|---|
2021-12-09 07:06:06 | 181.196.148.42 | 443 | Yes (2021-12-09 07:15:03 UTC) | 2021-12-09 19:xx:xx |
Referencing Malware Samples
The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 181.196.148.42. Please consider that the output is limited to the 500 most recent malware samples.
Time stamp (UTC) | MD5 hash | File Type | Virustotal | Malware |
---|---|---|---|---|
2021-12-10 02:08:10 | 5d1a1e4afb362e840f951ce7c611b686 | dll | n/a | |
2021-12-09 19:15:03 | 1d0ee370a68a4fefa8fdd0cba77310b1 | dll | n/a | |
2021-12-09 18:22:37 | ab5fadfb28ee84e1519027d04ba12b64 | exe | 50.00% | |
2021-12-09 05:19:44 | b9a4ba3fa319131400f9c62cd7f236d0 | dll | 40.30% | |
2021-12-09 05:17:54 | c553cdcc17bef123ce83ad1b68b7ace0 | dll | 40.30% | |
2021-12-09 05:08:59 | af87697c9a284f67509b0935fa0fa51b | dll | 43.94% | |
2021-12-08 18:00:54 | ba2c780d8dfac84d0f81e7396cfe80c0 | dll | 15.15% |