Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 31.54.39.153 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:31.54.39.153
Hostname:host31-54-39-153.range31-54.btcentralplus.com
AS number:AS2856
AS name:BT-UK-AS BTnet UK Regional network
Country:- GB
First seen:2022-09-20 08:00:29 UTC
Last online:2022-09-21 16:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2022-09-20 08:00:2931.54.39.1532078
QakBot
Offline
Yes (2022-09-20 08:05:05 UTC)2022-09-21 16:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 31.54.39.153. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2022-09-30 14:26:42fb3f760a7057f01408e9abaae71dd254isoVirustotal results 16.67%
Quakbot
2022-09-29 08:14:29672d871c1ed816184674215d14166682DLL dlln/a
Quakbot
2022-09-22 16:47:56747a50a101b528a155c8095f1aef0230DLL dllVirustotal results 35.71%
Quakbot
2022-09-22 16:47:2407bff4971a0576d198d729cc697bd917isoVirustotal results 16.67%
Quakbot
2022-09-22 16:19:457a9e88520d046df19b302387f5b57d53isoVirustotal results 33.33%
Quakbot
2022-09-22 14:16:48e22a4ef15b7c6c9eb884e445cefa2ef9DLL dllVirustotal results 39.44%
Quakbot
2022-09-22 14:16:30a57ffd6724b8b316f9d14d9940650274ison/a
Quakbot
2022-09-22 14:09:3010d387700a0b7857f40070726226795fisoVirustotal results 20.00%
n/a
2022-09-22 14:08:578dbb05feeb1563cdc03c160b87d091adisoVirustotal results 20.00%
n/a
2022-09-21 16:33:33482a3d7a420b96a86c7cba3e05b5670bDLL dlln/a
n/a
2022-09-21 16:24:213fd6ff929bb62358cee961d45ff1471dDLL dlln/a
n/a
2022-09-21 09:13:03069fbff5bbfa4dd3295442b26893c6bbDLL dllVirustotal results 48.57%
Quakbot
2022-09-21 09:12:534987ea480e59ec96f6a8e4b5e4140a3fison/a
Quakbot
2022-09-20 15:51:1327d991cf1ecb8ddaa972fa4aeb03cb8bDLL dlln/a
n/a
2022-09-20 15:50:479f665545060568e4b7facdd639132ff3ison/a
Quakbot
2022-09-20 15:28:2948074eba4c3a7b9a7bf1aea1ae16ed9eisoVirustotal results 13.56%
Quakbot
2022-09-20 13:58:1637d2c73ff9e9e454259fa917faa9bff0DLL dllVirustotal results 14.49%
n/a
2022-09-20 13:57:43c0f6d661aa433a6451832401b1f58fe4ison/a
Quakbot
2022-09-20 09:41:36665a19143949121b401c8ecdc6c5f6e2DLL dllVirustotal results 31.43%
n/a
2022-09-20 09:41:123105b433d3245f71b464809521426c92isoVirustotal results 10.17%
n/a
2022-09-19 21:00:06f20f4d48fff5222000628d10bb24837dDLL dlln/a
Quakbot
2022-09-19 16:45:43935bc666f7e278035fea57f37457eb46ison/a
Quakbot
2022-09-19 16:44:3241991a38d7dc05aaad59d579f98192f5DLL dlln/a
Quakbot
2022-09-19 16:44:06a8746b475f06bdb15fc08459c459fdbazipn/a
Quakbot
2022-09-19 11:11:262a24038a4ef292683586d0eeafceb337ison/a
Quakbot
2022-09-16 20:26:0195c72c221343864a3a7d2bcbc03bce98DLL dllVirustotal results 30.00%
Quakbot
2022-09-16 14:32:425f85b4cd792d6e3e2c11a7dba359a644DLL dllVirustotal results 20.29%
Quakbot
2022-09-16 14:32:0810bc318e30efa5db3b44148038889199isoVirustotal results 10.17%
Quakbot