Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 198.179.109.238 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:198.179.109.238
Hostname:rrcs-198-179-109-238.nys.biz.rr.com
AS number:AS11351
AS name:TWC-11351-NORTHEAST
Country:- US
First seen:2021-03-24 19:06:53 UTC
Last online:2021-04-02 20:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-03-24 19:06:53198.179.109.238447
TrickBot
Offline
No2021-04-02 20:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 198.179.109.238. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-03-30 04:15:14edfe6546b6308e7db59efa232d4307dbWord file xlsn/a
SilentBuilder
2021-03-30 01:40:14384b241eec61d58a4c17b19772cd659aWord file xlsn/a
TrickBot
2021-03-30 00:10:11330d82ca648c1eb0413d09b8cdc8dfefWord file xlsn/a
SilentBuilder
2021-03-29 23:50:16b2eb996aeedad90039e73436e31fe9ecWord file xlsn/a
SilentBuilder
2021-03-29 23:50:09ae0cb073320e0b368443e83d29920fd6Word file xlsn/a
TrickBot
2021-03-29 19:53:566f8c81f2c75397a505d230cdecbae2b0Word file xlsVirustotal results 6.67%
TrickBot
2021-03-29 19:13:42b8c4e4057c831c718d60e01866747505Executable exeVirustotal results 46.48%
TrickBot
2021-03-28 09:05:285d5663a871bca1daf5ed1d0af63f0101Executable exeVirustotal results 32.35%
n/a
2021-03-28 07:26:414064eed2b679d904d646eb5e2144cad1Executable exen/a
TrickBot
2021-03-28 07:22:35c0f9948f638fe4c6fe6e49e64aaa8cd3Executable exen/a
n/a
2021-03-25 01:11:425680d27d8646d84a5ea77fb8a6d94fefWord file xlsmn/a
TrickBot
2021-03-25 00:52:165bf4d75f98a6ad2f55ff19db2c05d680Word file xlsmn/a
TrickBot
2021-03-25 00:42:377b0a023fff21eacb7855aa138b97b8e9Word file xlsmn/a
TrickBot
2021-03-25 00:04:1801a3bb4b342bff34356c85aca0bc7a66Word file xlsmn/a
TrickBot
2021-03-24 23:55:48e8d890a893d8e7119f9a9a9a02ae4ceeWord file xlsmn/a
TrickBot
2021-03-24 23:52:59b49d5ec00a07ba0a74a8aa43f28a9e82Word file xlsmn/a
TrickBot
2021-03-24 22:52:45264ea2ca883548c25bd4d8c144d3bbddWord file xlsmn/a
TrickBot
2021-03-23 14:39:45b42a17a36414ae97978f152ca84af157Word file xlsmn/a
TrickBot