Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 70.26.75.148 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:70.26.75.148
Hostname:bras-base-brklon9703w-grc-22-70-26-75-148.dsl.bell.ca
AS number:AS577
AS name:BACOM
Country:- CA
First seen:2023-04-20 16:31:22 UTC
Last online:2023-05-02 22:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-04-20 16:31:2270.26.75.1482222
QakBot
Offline
Yes (2023-04-20 16:35:04 UTC)2023-05-02 22:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 70.26.75.148. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-04-27 05:33:28e3149f0478d2d5feefd6a95b6088bdc5DLL dllVirustotal results 48.57%
Quakbot
2023-04-26 07:58:3574fb2a3bf064b235d9d441509499d02dDLL dlln/a
Quakbot
2023-04-23 05:47:164a3e5182debec34919a47d38e24b3cf1DLL dlln/a
Quakbot
2023-04-23 04:35:42b20dc3ae270fd97857ebeed086bbca6fDLL dlln/a
Quakbot
2023-04-22 07:16:108490986c2ad999dbbef0761d156c1f79DLL dllVirustotal results 34.38%
Quakbot
2023-04-22 04:58:33027fe6341b1e1bfff541a9cf24c99351DLL dllVirustotal results 32.86%
Quakbot