Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 202.36.49.75 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:202.36.49.75
Hostname:n/a
AS number:AS38197
AS name:SUNHK-DATA-AS-AP Sun Network Hong Kong Limited - HongKong Backbone
Country:- KH
First seen:2021-11-06 08:31:46 UTC
Last online:2021-11-08 01:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2021-11-06 08:31:46202.36.49.75443
TrickBot
Offline
No2021-11-08 01:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 202.36.49.75. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-11-22 13:27:419307fb06eefcec990165deae29ac914bDLL dlln/a
TrickBot
2021-11-19 17:31:25db8db75c0d9fa7f862b63b4ae98225fcExecutable exen/a
TrickBot
2021-11-16 08:17:24cc0706e3c10555c6c43a61e3056f2994Executable exen/a
TrickBot
2021-11-06 06:58:154ee8866ebfed17fb4f3dda7ded586cffExecutable exeVirustotal results 26.47%
TrickBot