Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 80.6.50.34 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:80.6.50.34
Hostname:brnt-01-b2-v4wan-167419-cust33.vm7.cable.virginm.net
AS number:AS5089
AS name:NTL
Country:- GB
First seen:2023-05-10 17:02:17 UTC
Last online:2023-07-11 06:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-05-10 17:02:1780.6.50.34443
QakBot
Offline
Yes (2023-05-10 17:05:03 UTC)2023-07-11 06:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 80.6.50.34. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-06-30 23:31:11f94a17036dd1cc531222fe57b67e7569DLL dlln/a
Quakbot
2023-06-20 17:13:376679a7d280f6a067a8c04f6fbaf1d253jsVirustotal results 5.08%
n/a
2023-05-30 20:45:59ab8ef3423324168d06b2d122f75ca130msiVirustotal results 3.77%
n/a
2023-05-30 20:45:54e35727b10193fe55df216a1f9d166997msiVirustotal results 5.00%
n/a
2023-05-30 15:54:44665afc8f8b7972f427fe1bd90d263032msin/a
n/a
2023-05-28 06:15:538c03d2cd7ef0358614f68d34bf942380DLL dllVirustotal results 58.57%
Quakbot
2023-05-24 17:04:349e3f879916f94bdd171a84bcfe3479c7DLL dlln/a
Quakbot
2023-05-20 06:00:18abc8f0a97506e42e1ed5998f61618ca3DLL dlln/a
Quakbot
2023-05-08 10:32:4567ea0b6a6a6547b33594ca568c6c3e26DLL dlln/a
Quakbot