Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 45.234.212.234 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:45.234.212.234
Hostname:45.234.212.234.hrvirtual.com.br
AS number:AS267373
AS name:Hr Transportes Verticais
Country:- BR
First seen:2021-01-18 09:27:35 UTC
Last online:2021-02-19 15:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-01-18 09:27:3545.234.212.234447
TrickBot
Offline
2021-02-19 15:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 45.234.212.234. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-02-10 10:55:14d564753c69c611fb485af9b66b967630DLL dlln/a
TrickBot
2021-02-10 10:55:14ed7dff976c3a73a4338997318f0ef7f8DLL dllVirustotal results 30.00%
TrickBot
2021-02-02 14:40:0658510c0f3859f90161f9393cbad4ee34Word file xlsbn/a
TrickBot
2021-01-27 22:02:218d9162dc711717f182456a71a3c5fdc8Executable exeVirustotal results 50.70%
TrickBot
2021-01-27 21:35:145a112434ce7bca2cc540c3f8e0f49d60Executable exeVirustotal results 70.42%
TrickBot
2021-01-06 10:28:50ab8b39ee9d05638de8c1b8cade3dfc5fExecutable exen/a
TrickBot
2021-01-06 03:05:330f1e739bc00f7f55f4d5b87db71d8f14Executable exen/a
TrickBot
2021-01-06 00:06:24954ba1f54b2f6b6694e5e79693d58a21Executable exen/a
TrickBot
2020-12-30 17:12:1661981f8f666ffd924814f750a41b6308Executable exeVirustotal results 16.90%
TrickBot