Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 78.191.52.30 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:78.191.52.30
Hostname:78.191.52.30.dynamic.ttnet.com.tr
AS number:AS9121
AS name:TTNET
Country:- TR
First seen:2021-11-23 11:41:46 UTC
Last online:2021-11-25 08:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2021-11-23 11:41:4678.191.52.30995
QakBot
Offline
No2021-11-25 08:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 78.191.52.30. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-11-23 16:15:32d6d40468b11693fc897ebac6eb970326zipn/a
Quakbot
2021-11-23 15:47:39e473e83eabd26a2b2b30604dd63842bcDLL dlln/a
Quakbot
2021-11-22 18:18:308b978422d67d219cfe0106971462b3ecDLL dlln/a
Quakbot