Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 31.13.195.145 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:31.13.195.145
Hostname:n/a
AS number:AS34224
AS name:NETERRA-AS
Country:- BG
First seen:2021-11-20 15:33:56 UTC
Last online:2021-12-05 11:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2021-11-20 15:33:5631.13.195.145443
BazarLoader
Offline
Yes (2021-11-25 15:43:11 UTC)2021-12-05 11:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 31.13.195.145. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-11-09 22:13:240357e41caab20be24e3397c9b7f59d65DLL dllVirustotal results 38.24%
BazaLoader
2021-11-05 19:19:2896f40d4890477fcdacc6290994f7da88DLL dllVirustotal results 22.06%
BazaLoader
2021-11-05 16:18:07939b5236d3a4ccd9cff1687756fd03feExecutable exen/a
RedLineStealer
2021-11-04 21:00:43200641c3a6d4e0895c70d1784549ceccDLL dllVirustotal results 5.17%
BazaLoader
2021-11-04 18:45:14205ab48767501c014875ecd590be1920DLL dlln/a
BazaLoader
2021-11-04 17:20:048d9d5c76b4b3922d99b8ec818341e88aDLL dlln/a
BazaLoader
2021-11-04 17:09:498425bfbf5201bc809a07e71baac38619DLL dlln/a
BazaLoader
2021-11-03 20:24:05c1b1e1ae7130a526a5ef421a9d83b2c6DLL dlln/a
BazaLoader
2021-11-03 19:56:537952c0ed29cc9b8b9abf84da10a715b8DLL dllVirustotal results 4.55%
BazaLoader
2021-11-03 19:06:525d2f6dfd598aafed069602d1a81ef545DLL dlln/a
BazaLoader
2021-11-03 18:49:443b569f7ad1a497a7ced22d2884399115DLL dlln/a
BazaLoader
2021-11-03 18:07:3096e0faebeea359eb91f0d33fb319699dDLL dlln/a
BazaLoader
2021-11-03 17:52:31454b95ce3f75bd9069b74c0294f6b1a2DLL dlln/a
BazaLoader