Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 197.89.144.19 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:197.89.144.19
Hostname:197-89-144-19.dsl.mweb.co.za
AS number:AS10474
AS name:OPTINET
Country:- ZA
First seen:2021-10-25 13:02:34 UTC
Last online:2021-10-27 05:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-10-25 13:02:34197.89.144.19443
QakBot
Offline
No2021-10-27 05:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 197.89.144.19. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-11-16 17:10:25b57db8bbc7ab78e2c0b09049cfa623ffDLL dlln/a
n/a
2021-11-03 20:17:57f775cb3ce382473d29ef0c719b99cbe4DLL dllVirustotal results 42.42%
Quakbot
2021-10-26 12:55:27afd155975b70ef18a1c4128eefc2f881DLL dlln/a
n/a
2021-10-26 12:22:21756eee7b2465093ecfd0dcb429a1ff1aDLL dlln/a
n/a
2021-10-26 00:41:437547f03a9d71c1b576e61967f246228cDLL dlln/a
n/a
2021-10-26 00:40:26793dc2e39241367057cd879ff29817d9DLL dlln/a
n/a
2021-10-26 00:15:46fc007038f720e8d44f1c767243be7619DLL dlln/a
n/a
2021-10-25 19:26:3464d811e18dea3b218a643fd5a3ef3ddcDLL dlln/a
n/a
2021-10-25 12:42:5907aac2fc58f69c13859a1d25e938f320DLL dlln/a
n/a