Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 70.115.104.126 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:70.115.104.126
Hostname:070-115-104-126.res.spectrum.com
AS number:AS11427
AS name:TWC-11427-TEXAS
Country:- US
First seen:2022-10-25 12:05:31 UTC
Last online:2022-11-28 22:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2022-11-17 18:49:2970.115.104.126995
QakBot
Online
Yes (2022-11-17 18:50:06 UTC)2022-11-28 22:xx:xx
2022-10-25 12:05:3170.115.104.126443
QakBot
Offline
Yes (2022-10-25 12:10:15 UTC)2022-10-25 14:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 70.115.104.126. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2022-11-28 13:09:11638f6bca78675365d31e3903b1f2756aison/a
n/a
2022-11-28 13:09:03cdc5da43956726646ad0efdc6be15858zipn/a
n/a
2022-11-21 17:22:48eac955d9afd79c7c7fa3c268f789727bDLL dlln/a
Quakbot
2022-11-18 15:49:09b1e1d2ea1e2e0936aeb8e3f79ade7406DLL dlln/a
n/a
2022-11-18 15:48:519484312e8cb775cda836dbee177c4060isoVirustotal results 12.28%
n/a
2022-11-18 15:48:43074955c4c78cf2667da24fa0622a05c1zipn/a
n/a
2022-11-18 14:19:461096fd31db8e76378bea0602fae2754bDLL dllVirustotal results 20.29%
n/a
2022-11-18 13:22:36c5e7003aa6028dd3efb815b237eb8c20DLL dlln/a
n/a
2022-11-18 13:22:10f860cc2f0664f9a86d87058f02aa8a42zipn/a
n/a
2022-11-18 13:21:57190c786bca1bd89e856f2760c33596bczipVirustotal results 0.00%
n/a
2022-11-17 19:10:39ba1953484c6e1a848e188f4fdf95546eDLL dlln/a
n/a
2022-11-17 19:10:0321ecde6d5a54c108416761b9bd4be47czipn/a
Quakbot
2022-10-27 14:34:0158c01b56106aa46b8735bcf1cbddf714DLL dlln/a
Quakbot
2022-10-27 13:21:196f930819da95b2191c33ec736736e149DLL dlln/a
n/a
2022-10-27 10:06:319273f3c2e5bdf3c8ff0f1159673c4b95DLL dlln/a
n/a
2022-10-27 10:06:19a6e6be3b0c351b39ed342ca5a4a07058ison/a
n/a
2022-10-27 09:40:217af16fcfdb8a89e6fca437313be9e64dDLL dlln/a
n/a
2022-10-27 09:39:57699cf707378b359602f7629c5b210ad1ison/a
n/a
2022-10-26 20:07:5284f13b550a808dfe7ee533e627e644bfDLL dlln/a
Quakbot
2022-10-26 20:07:302e4627800edde87ee7e2a90342baefcdison/a
Quakbot
2022-10-26 19:07:435f564db88f499a2e943b819f366bc02fDLL dlln/a
Quakbot
2022-10-26 19:07:340968826f48debcfd510cda1cf8c7bef3ison/a
Quakbot
2022-10-26 15:50:067164c2619b26b29fb8f01d9ebb3bbba4isoVirustotal results 31.15%
n/a
2022-10-26 11:17:14f5fea7f459d45734dae1ec1eae8307a8DLL dlln/a
n/a
2022-10-26 10:48:58cb6106f0759935464137044bb3eaa7a5DLL dlln/a
n/a
2022-10-26 10:48:4358997e418f955156a65a94beb7987619ison/a
n/a
2022-10-26 08:23:12755b2f764a95168ad049e5836892bf7fisoVirustotal results 31.15%
n/a
2022-10-26 04:21:009270cbd5142fba32e7845198e621cd98ison/a
n/a
2022-10-25 13:48:0824099dc2503020948f9c74184d0c1c41DLL dlln/a
n/a
2022-10-25 13:47:46d2e2b662829abb48a3a82c4dab2a446dison/a
n/a
2022-10-25 13:02:531e04017afdbac68a14c9bf83573d7732DLL dlln/a
Quakbot
2022-10-25 13:02:40195e937c4a077e56c6afc19bc45ea39cison/a
Quakbot
2022-10-25 11:28:2929e572000dd232365c4ce9566d220c9aDLL dllVirustotal results 36.62%
Quakbot
2022-10-25 11:28:218ed43963842e7787f4343dcd687d5bcaison/a
Quakbot