Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 41.96.56.224 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:41.96.56.224
Hostname:n/a
AS number:AS36947
AS name:ALGTEL-AS
Country:- DZ
First seen:2022-09-15 19:55:00 UTC
Last online:2022-09-16 06:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2022-09-15 19:55:0041.96.56.224443
QakBot
Offline
Yes (2022-09-15 19:55:03 UTC)2022-09-16 06:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 41.96.56.224. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2022-09-23 09:15:20dc7093386557fbb211e1a86b557f74aeDLL dllVirustotal results 54.93%
n/a
2022-09-16 17:13:59fc7120dfbd08e8330026e63b88ddd45aDLL dlln/a
n/a
2022-09-16 17:12:39124405e8f46a33ff523128b208c951d7DLL dlln/a
n/a
2022-09-16 17:12:2843a7e6abe10774f7b5dcdbc479e9742bison/a
n/a
2022-09-16 14:32:425f85b4cd792d6e3e2c11a7dba359a644DLL dllVirustotal results 20.29%
n/a
2022-09-16 14:32:0810bc318e30efa5db3b44148038889199ison/a
n/a
2022-09-15 19:36:44fbcdc3164e6fc424ab50d2e13fbaedfdDLL dlln/a
Quakbot
2022-09-15 19:36:3150ad8cabee08c42ffd42181835b2e83dison/a
Quakbot