Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 31.53.29.198 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:31.53.29.198
Hostname:host31-53-29-198.range31-53.btcentralplus.com
AS number:AS2856
AS name:BT-UK-AS BTnet UK Regional network
Country:- GB
First seen:2023-05-02 15:15:54 UTC
Last online:2023-05-16 20:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-05-02 15:15:5431.53.29.1982222
QakBot
Offline
Yes (2023-05-02 15:20:06 UTC)2023-05-16 20:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 31.53.29.198. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-05-24 04:00:33c2476efbe47c464242c2943ab9963f2cDLL dlln/a
Quakbot
2023-05-21 06:35:3850de43f02e23d8eb4fa1c159c48582c6DLL dllVirustotal results 55.88%
Quakbot
2023-05-17 15:07:08a314295f9c25f8ba555ca58c5938cbe9DLL dlln/a
Quakbot
2023-05-07 04:28:07734060ff4d6a7a3821cd41ebf302e755DLL dlln/a
Quakbot
2023-05-03 21:51:47903f97821423692fc79d84c38289e823DLL dllVirustotal results 10.14%
Quakbot
2023-05-03 21:32:15e0232b2c81b357a19959334975956d0eDLL dllVirustotal results 15.94%
Quakbot
2023-05-03 21:30:4193699b93ab031a414165c9e835d28350DLL dllVirustotal results 14.49%
Quakbot
2023-05-03 21:12:32f1ef2e13c7a1c04a89a8216af8ea9790DLL dllVirustotal results 14.49%
Quakbot
2023-05-03 21:05:28c0257663a9ee75f1750fb9f60144bb35DLL dllVirustotal results 13.04%
Quakbot
2023-05-03 21:03:121f3993c2c8cbdaa20fc09283d9350a4dDLL dllVirustotal results 15.94%
Quakbot