Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 79.67.165.149 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:79.67.165.149
Hostname:79-67-165-149.dynamic.dsl.as9105.com
AS number:AS9105
AS name:TISCALI-UK TalkTalk Communications Limited
Country:- GB
First seen:2023-02-14 14:52:02 UTC
Last online:2023-03-13 00:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-02-14 14:52:0279.67.165.149995
QakBot
Offline
Yes (2023-02-14 14:55:03 UTC)2023-03-13 00:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 79.67.165.149. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-03-10 00:01:222bd110d17002ecc13814cfd2fc4cd939DLL dllVirustotal results 27.94%
n/a
2023-03-09 14:39:22f685c47ebacb5ea1d9a4de01713260a1DLL dlln/a
n/a
2023-03-09 12:16:5228da37af50153bee403dc5d3f04a3721DLL dllVirustotal results 17.39%
Quakbot
2023-02-15 16:38:23f4def11ae4014fbf7dec2e4563c572a1DLL dlln/a
n/a
2023-02-15 15:25:13c1a91d62c48fb71cbebdaf4011e6ae38DLL dlln/a
n/a
2023-02-15 15:09:34fec924486334002d6521953b921ec196DLL dlln/a
n/a