Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 185.143.48.16 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:185.143.48.16
Hostname:ns1.i4u.hu
AS number:AS20742
AS name:AHOL
Country:- HU
First seen:2021-08-20 04:28:38 UTC
Last online:2021-10-12 08:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-08-20 04:28:38185.143.48.167443
Dridex
Offline
No2021-10-12 08:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 185.143.48.16. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-10-10 16:53:2808494ee05d5ded87c11a3ebf4c48cf43Executable exeVirustotal results 72.06%
Dridex
2021-10-05 20:43:27a47d272d4136402b87676c979f5ab241Executable exeVirustotal results 73.13%
Dridex
2021-10-05 20:26:42b15a54b90d31c9148b62f7fb09f914baExecutable exeVirustotal results 71.01%
Dridex
2021-10-05 20:03:522c66b7083c23e8c281eefcacacc9d3d8Executable exeVirustotal results 64.71%
n/a
2021-10-05 20:00:3830c387d6fef5bebb99e2b4df3642ca1eExecutable exeVirustotal results 65.71%
Dridex
2021-10-05 19:44:47ecd2c22a339cc7db2ec91ed7608b8cc1Executable exeVirustotal results 64.29%
Dridex
2021-09-02 21:28:11b915ff5227e0b298da1f0bcc080da4b3Executable exeVirustotal results 66.67%
Dridex
2021-08-29 21:11:4259c6db7bd57d019b2ec8370959ec07fbExecutable exeVirustotal results 68.12%
Dridex
2021-08-19 03:54:33aafaeb157be3e6f9250b324d55acfed2Executable exeVirustotal results 65.71%
Dridex