Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 197.92.136.122 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:197.92.136.122
Hostname:197-92-136-122.hff.mweb.co.za
AS number:AS10474
AS name:OPTINET
Country:- ZA
First seen:2022-07-16 07:56:10 UTC
Last online:2023-03-10 10:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2022-07-16 07:56:10197.92.136.122443
QakBot
Offline
Yes (2022-07-16 08:00:04 UTC)2023-03-10 10:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 197.92.136.122. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-03-10 00:01:222bd110d17002ecc13814cfd2fc4cd939DLL dllVirustotal results 27.94%
n/a
2023-03-09 14:39:22f685c47ebacb5ea1d9a4de01713260a1DLL dlln/a
n/a
2023-03-09 12:16:5228da37af50153bee403dc5d3f04a3721DLL dllVirustotal results 17.39%
Quakbot
2023-02-22 17:49:27d4006bece2a7933ca9bef826b85e17bbzipn/a
n/a
2022-07-21 16:33:08c03de59890bb60e2157efdfa0ffdcf2eDLL dlln/a
n/a
2022-07-15 14:26:3296eb0292ad176c905613678a3125cca5DLL dllVirustotal results 52.94%
Quakbot
2022-07-14 21:44:5990c7b8f66c18c1e7b06ebd9c8a7f731dDLL dllVirustotal results 44.12%
Quakbot
2022-07-14 21:44:29a8c071f4d69627f581fa15495218bff7DLL dllVirustotal results 46.27%
Quakbot
2022-07-14 18:34:311fffb3fdb0a4b780385cc5963fd4d40cDLL dllVirustotal results 43.48%
Quakbot