Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 36.94.100.202 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:36.94.100.202
Hostname:n/a
AS number:AS7713
AS name:TELKOMNET-AS-AP PT Telekomunikasi Indonesia
Country:- ID
First seen:2021-05-24 14:24:25 UTC
Last online:2021-06-20 23:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-05-24 14:24:2536.94.100.202443
TrickBot
Offline
2021-06-20 23:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 36.94.100.202. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-07-04 20:33:05562255c763893489cbf2836620322d05Executable exeVirustotal results 65.71%
TrickBot
2021-06-29 18:13:3181b810ef248f966f2346ac2366b0960dExecutable exen/a
n/a
2021-06-29 18:05:55d5027ed0ea80dc469af07a5b36ba0651Executable exeVirustotal results 69.57%
TrickBot
2021-06-23 16:25:18cfe860fae60b1d8b9985e7b9ddc13ecfExecutable exeVirustotal results 33.33%
n/a
2021-06-23 08:41:37f4f6d7d458859ba2ce49990173113db5Executable exeVirustotal results 24.64%
n/a
2021-06-23 05:46:33dc83ae9773206637712649e3a3ee6c30Executable exen/a
TrickBot
2021-06-23 00:07:55feccae7cec0a0765c0222316f1ecc744Executable exen/a
n/a
2021-06-22 23:24:371bc60859c0e8ce3076030b60230e61abExecutable exen/a
TrickBot
2021-06-22 20:54:5697c9f2eefac68f1a5505d614161f93c8Executable exen/a
TrickBot
2021-06-20 16:57:109b9e0af2e934922ce67881ae1044b1f1Executable exeVirustotal results 61.43%
TrickBot