Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 37.29.124.94 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:37.29.124.94
Hostname:n/a
AS number:AS31133
AS name:MF-MGSM-AS PJSC MegaFon
Country:- RU
First seen:2021-02-26 21:02:42 UTC
Last online:2021-03-19 11:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-02-26 21:02:4237.29.124.94447
TrickBot
Offline
2021-03-19 11:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 37.29.124.94. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-03-19 19:17:25c957b150c5a36d00f1c964d56a151997DLL dlln/a
n/a
2021-03-18 20:20:292d3b7e0fed863ebc086180c1623144a0Executable exeVirustotal results 25.71%
TrickBot
2021-03-17 17:11:3206937d7484a269c8e136e1b92a933329Word file xlsbn/a
TrickBot
2021-03-17 17:06:387e8f189d9d471845be3d447543844382Word file xlsbn/a
TrickBot
2021-03-17 07:15:241a43bebe59e1ea00ba2d2065dc3465baWord file xlsmn/a
n/a
2021-03-16 18:55:2723a74b2dbc065226a8788adb31de3841Word file xlsmn/a
TrickBot
2021-03-16 18:30:5654f61053dbefcb1cdee43174ad2d923cWord file xlsmn/a
TrickBot
2021-03-16 17:10:19eee6c81e1615eb68571cfea6cd3f03ceWord file xlsmn/a
TrickBot
2021-03-16 16:43:05ec7df0c74a64d354a30f017edc732872Word file xlsmn/a
TrickBot
2021-03-16 15:44:070bc709806f44adc858230530c4ddc48cWord file xlsmn/a
TrickBot
2021-03-16 15:11:38a46210010d9d45de04733bacea2ba5d5Word file xlsmn/a
TrickBot
2021-03-16 04:16:52e905846ca83adae7c9fa32e55ed1b826DLL dllVirustotal results 17.65%
TrickBot
2021-03-13 02:59:15958f2d2965ef9b6b23134513688d36aaDLL dllVirustotal results 26.87%
n/a
2021-03-09 23:19:471c456166cb3dcbb6cf5af5fc02286f3fWord file xlsn/a
SilentBuilder
2021-03-09 21:58:091ff6d67f1401e149896fc909e9e6bdebWord file xlsn/a
SilentBuilder
2021-03-09 21:56:3604d8d81a67461b59ed6e14cf2f3446e8Word file xlsn/a
SilentBuilder
2021-03-09 21:14:1600bfb6feaac5ec51d97bea8b056f8bb3Word file xlsn/a
SilentBuilder
2021-03-09 19:55:16b9e6fac705c8a3a54a663a8db07ba1edWord file xlsn/a
SilentBuilder
2021-03-08 14:45:440c04c62c61480d08eecc3222e00ef9baWord file xlsn/a
SilentBuilder
2021-03-08 14:45:29061323bb10cb7ae3aec5b7f7e26f69c3Word file xlsn/a
TrickBot
2021-03-04 02:38:1075378e60ba4f150d6adb5468edef655bDLL dllVirustotal results 17.14%
n/a
2021-03-02 20:33:30b44a1334d0caa1baaf8f1f6927cc0145Executable exeVirustotal results 37.70%
TrickBot
2021-03-02 07:17:441d2027e93e583a0eb3eb3c8389bf02b4Word file xlsbVirustotal results 3.12%
TrickBot
2021-03-02 06:52:13e2936c63d59cee0853f9d50fc857813cDLL dllVirustotal results 23.19%
TrickBot
2021-03-02 06:46:173319f1c2ccc53496ee27ca9dc4646d00Word file xlsbn/a
TrickBot
2021-02-26 20:30:24d48404abfb5c8a7bac7f9f619da899e9DLL dllVirustotal results 13.04%
TrickBot