Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 72.249.22.245 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:72.249.22.245
Hostname:n/a
AS number:AS30496
AS name:AS-TIERP-30496
Country:- US
First seen:2021-04-15 05:50:13 UTC
Last online:2021-07-25 18:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2022-01-28 18:45:2172.249.22.2458080
Emotet
Offline
Yes (2022-01-28 18:50:04 UTC)2022-03-30 03:xx:xx
2021-04-15 05:50:1372.249.22.2452303
Dridex
Offline
No2021-07-25 18:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 72.249.22.245. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-05-07 05:01:2527b1f3f1d4e343159d02b8d84721149cDLL dlln/a
Dridex
2021-05-05 13:11:48ee095aab46abe5028040adadc7eb67b2DLL dllVirustotal results 66.18%
n/a
2021-05-04 09:35:58f7cb21fce47ead1e21003168d264747fDLL dlln/a
n/a
2021-05-02 15:58:513da2b1a7af279ae111c016282f7a0debDLL dlln/a
n/a
2021-05-02 15:23:44242c95207d8a6000b3c00f6f295e4fdeDLL dlln/a
n/a