Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 181.205.41.42 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:181.205.41.42
Hostname:Dinamic-Tigo-181-205-41-42.tigo.com.co
AS number:AS13489
AS name:EPM Telecomunicaciones S.A. E.S.P.
Country:- CO
First seen:2021-12-09 06:45:32 UTC
Last online:2021-12-16 18:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-12-09 06:45:32181.205.41.42443
TrickBot
Offline
Yes (2021-12-09 06:50:05 UTC)2021-12-16 18:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 181.205.41.42. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-12-30 17:22:24e85fb3b1b7e18947f9bbe27bdcd4075cExecutable exen/a
TrickBot
2021-12-30 10:04:2104a9d3c48283e8a77387c31ebfea2ce3Executable exen/a
TrickBot
2021-12-30 04:39:54268dfd85b09b97709b4e1cb31e15e005Executable exen/a
TrickBot
2021-12-30 04:12:2340c9d82c9ba8a1c03612c3d59b2e1e6bExecutable exeVirustotal results 40.68%
TrickBot
2021-12-30 04:11:195049847d7c91e1ae2a133d6856a63a75Executable exen/a
TrickBot
2021-12-30 04:09:530150604048c083bd6e7a81a9482809cbExecutable exen/a
TrickBot
2021-12-29 13:58:19f8e9e9d01869e7218e24928b17d6ff8fExecutable exen/a
TrickBot
2021-12-29 11:45:124fabd29554ae6c55c59301998b0e51d6Executable exeVirustotal results 37.31%
TrickBot
2021-12-29 07:06:1166870c85978a9011c7c57d2145828479Executable exeVirustotal results 25.37%
TrickBot
2021-12-29 07:02:278def9707d07f100532447f1836ba460cExecutable exeVirustotal results 26.47%
TrickBot
2021-12-29 07:01:51510f48081d3f465bf972019389b7e52eExecutable exeVirustotal results 38.24%
TrickBot
2021-12-17 19:28:532d0fdca678e30ceea5383403f83673feDLL dllVirustotal results 53.73%
TrickBot
2021-12-16 13:57:40c637e64c336e04ec0deab7ce20a1e78eExecutable exen/a
TrickBot
2021-12-16 08:40:35d04f20096c2509b499fdade18f9377deExecutable exen/a
TrickBot
2021-12-16 07:13:370f1a64f942399a6226e66b13e0b74f30Executable exen/a
TrickBot
2021-12-13 10:32:21eb288a35198463d5ad5ff197924bbcd6DLL dlln/a
TrickBot
2021-12-13 10:09:514cc06b204b37d811ab03954a44599143DLL dlln/a
TrickBot
2021-12-12 06:02:52839d834b835923df7246670955b78fe9DLL dllVirustotal results 53.03%
TrickBot
2021-12-10 04:04:450e2e40aa697709b5125ce5d8bb2a5d13DLL dlln/a
TrickBot
2021-12-09 08:37:39f258a8d3395588fbcea9e8e67b86fde5DLL dlln/a
TrickBot
2021-12-09 05:14:17420a2316ac1db724c35b34770cf7eef6DLL dllVirustotal results 50.00%
TrickBot
2021-12-09 05:10:216583ce193f8944391ffdb0c92ceeac56DLL dllVirustotal results 40.91%
TrickBot