Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 85.175.171.246 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:85.175.171.246
Hostname:n/a
AS number:AS25490
AS name:STC-AS
Country:- RU
First seen:2021-03-24 10:17:13 UTC
Last online:2021-04-07 04:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-03-24 10:17:1385.175.171.246447
TrickBot
Offline
2021-04-07 04:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 85.175.171.246. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-03-26 08:22:26b9518acfbcc437598587439423ff7a4dWord file docn/a
TrickBot
2021-03-26 07:54:56d3c979e1fbf75c7a3f634623b65e37b1Word file xlsmn/a
TrickBot
2021-03-26 07:50:081fcfb3edfe0d037898e1f2ad1f552ebdWord file xlsmn/a
TrickBot
2021-03-26 07:13:48b9866719ae9fc35777f82ff25cbe06f7Word file xlsmn/a
TrickBot
2021-03-26 07:00:35d68d75de28838507aaeb45d7bf520395Word file xlsmn/a
TrickBot
2021-03-26 06:49:2799fc139aa7cf32e1685c8abb55c58a40Word file xlsmn/a
TrickBot
2021-03-26 06:32:17255c81deb5e5b3129b71168b4443af3eWord file xlsmn/a
TrickBot
2021-03-23 21:07:36ca0aeae386efea445ecac9844fa68916Executable exeVirustotal results 71.43%
TrickBot