Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 75.90.41.108 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:75.90.41.108
Hostname:h108.41.90.75.dynamic.ip.windstream.net
AS number:AS7029
AS name:WINDSTREAM
Country:- US
First seen:2023-04-20 16:31:23 UTC
Last online:2023-04-24 16:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-04-20 16:31:2375.90.41.108995
QakBot
Offline
Yes (2023-04-20 16:35:05 UTC)2023-04-24 16:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 75.90.41.108. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-05-03 21:57:335f5e7cdd47ad54546e3d1213dfe6af45DLL dllVirustotal results 50.00%
Quakbot
2023-05-03 21:53:093e2a2a5b8753809b2d975c0dc257ab50DLL dllVirustotal results 65.22%
Quakbot
2023-05-03 21:38:287895137651a9aedc2275c93bb2dc6fe5DLL dllVirustotal results 53.62%
Quakbot
2023-05-03 21:37:089c09698720e1d65a0f30c6e9ddc111b1DLL dllVirustotal results 50.72%
Quakbot
2023-05-03 21:27:36820a814d3fd6c445a0359a044e8b0421DLL dllVirustotal results 48.53%
Quakbot
2023-04-27 05:25:4463adcd4e4f405e7ecce6f3ffdc77d8b2DLL dllVirustotal results 47.14%
Quakbot
2023-04-23 19:07:095c2dd16a3e14b011b01007086df3a5daDLL dllVirustotal results 42.86%
Quakbot
2023-04-22 05:06:02b29f99403a65b285b791719692e6ea27DLL dllVirustotal results 34.29%
Quakbot