Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 197.89.8.51 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:197.89.8.51
Hostname:197-89-8-51.dsl.mweb.co.za
AS number:AS10474
AS name:OPTINET
Country:- ZA
First seen:2022-06-07 13:42:14 UTC
Last online:2022-06-08 09:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2022-06-07 13:42:14197.89.8.51443
QakBot
Offline
Yes (2022-06-07 13:45:07 UTC)2022-06-08 09:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 197.89.8.51. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2022-06-09 23:02:2898963064dd17116528a2af7e5224a847DLL dlln/a
n/a
2022-06-08 11:53:3159c9d442335e4d5e626d694b2cf5098dDLL dllVirustotal results 32.84%
n/a
2022-06-08 10:06:44b7339228c2aa1dfc978e5727fb0c0935DLL dlln/a
n/a
2022-06-08 09:23:03d715d0ba5bf6142888b13c40b431a8c8DLL dlln/a
n/a
2022-06-08 00:42:19e4382d11b26c733137abcb346e0beaacDLL dllVirustotal results 32.84%
n/a
2022-06-07 15:57:09889de0fcbdf800a0732d5909c5b16057DLL dlln/a
n/a
2022-06-07 15:07:517194399c38347fd0f2e5f1925e6c3ed0DLL dlln/a
n/a
2022-06-07 15:04:27f0cc9d54b6b2e316e049e46e26f91ed0DLL dlln/a
n/a
2022-06-07 14:20:43a14d48974eab6839b1238f984b3c28d2DLL dllVirustotal results 27.27%
n/a