Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 41.97.64.224 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:41.97.64.224
Hostname:n/a
AS number:AS36947
AS name:ALGTEL-AS
Country:- DZ
First seen:2022-09-12 16:03:03 UTC
Last online:2022-09-12 22:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2022-09-12 16:03:0341.97.64.224443
QakBot
Offline
Yes (2022-09-12 16:05:03 UTC)2022-09-12 22:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 41.97.64.224. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2022-09-15 12:49:423af4a4a28dafbb10a6637e59059015feDLL dllVirustotal results 35.71%
n/a
2022-09-15 12:49:325f63b8d62697471b23cf5dbc03b7bc26ison/a
Quakbot
2022-09-14 17:03:299190784329feb77dd4a649d9c2ed7e48ison/a
Quakbot
2022-09-14 14:45:5513355c76c11d17bb2542608e3104fa88ison/a
Quakbot
2022-09-14 14:02:23aaabcb8c5464c4fdb6d72816f77f3b65DLL dllVirustotal results 22.86%
Quakbot
2022-09-14 13:47:5942a75a233cd300cb4207d6122d2cce0bisoVirustotal results 8.47%
Quakbot
2022-09-14 01:18:23117820c96b9443cdf6f8b32051ce40aeDLL dllVirustotal results 14.29%
Quakbot
2022-09-13 13:33:4222c994d8334a898374532a7522f53fcbDLL dlln/a
n/a
2022-09-13 13:14:5944255200f634646100d6e71e8f5ae7d7DLL dllVirustotal results 10.14%
n/a
2022-09-12 17:11:068cbe7a375c83265d6a4e92d19247e720DLL dlln/a
n/a
2022-09-12 15:57:00416a95274ef9248e08d88d5e2abe6971DLL dlln/a
n/a