Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 5.59.205.32 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:5.59.205.32
Hostname:dhcp-32-205-59-5.metro86.ru
AS number:AS50923
AS name:METRO-SET-AS Metroset Autonomous System
Country:- RU
First seen:2021-04-06 15:48:36 UTC
Last online:2021-06-08 21:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-04-06 15:48:365.59.205.32443
TrickBot
Offline
No2021-06-08 21:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 5.59.205.32. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-04-15 21:29:18784c7b3c4131cf0f8ac3d38feb1f378bDLL dllVirustotal results 58.82%
TrickBot