Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 24.28.12.23 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:24.28.12.23
Hostname:cpe-24-28-12-23.austin.res.rr.com
AS number:AS11427
AS name:TWC-11427-TEXAS
Country:- US
First seen:2021-08-04 22:15:02 UTC
Last online:2021-09-08 08:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-08-04 22:15:0224.28.12.23443
TrickBot
Offline
2021-09-08 08:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 24.28.12.23. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-09-07 22:33:412f7bf982a8b45f47c645f6a172602889Executable exeVirustotal results 53.62%
TrickBot
2021-09-07 22:08:482d929966aaf9fcd1fcb0fbb1749aaf8eExecutable exeVirustotal results 63.77%
n/a
2021-08-21 22:25:290a554fade252dfdd4045a623e41daf5dExecutable exeVirustotal results 46.38%
n/a
2021-08-09 19:43:424cdebbab0991803abfcb03d5fe26f430Executable exeVirustotal results 43.48%
n/a
2021-08-04 21:54:060c6253f8006e716d643a590a0214f475DLL dllVirustotal results 40.58%
TrickBot