Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 5.83.45.48 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:5.83.45.48
Hostname:n/a
AS number:AS64398
AS name:NXTHOST-64398 NXTHOST.COM - NXTSERVERS SRL
Country:- RO
First seen:2021-10-11 18:50:01 UTC
Last online:2021-10-19 05:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-10-11 18:50:015.83.45.485412
Dridex
Online
2021-10-19 05:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 5.83.45.48. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-10-11 21:43:10e18bb34077b137f8c969cd65b9cc9e11DLL dllVirustotal results 18.18%
Dridex
2021-10-11 21:43:086f229cf99f5acd2d099b88e1f1432a11DLL dllVirustotal results 19.40%
Dridex
2021-10-11 21:43:068648fe8a722044918faa543988eea1b0DLL dllVirustotal results 19.70%
Dridex
2021-10-11 21:43:0560afbf2d3690e314a0095b90cce552ffDLL dllVirustotal results 21.21%
Dridex
2021-10-11 18:37:09769fe24e8521883195d0e96b2f1c1a41DLL dllVirustotal results 19.70%
Dridex
2021-10-11 18:36:4738b2c14f20f89f5b007a660bda519fc6DLL dllVirustotal results 17.24%
Dridex