Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 85.240.173.251 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:85.240.173.251
Hostname:bl7-173-251.dsl.telepac.pt
AS number:AS3243
AS name:MEO-RESIDENCIAL
Country:- PT
First seen:2023-04-25 08:20:53 UTC
Last online:2023-06-16 16:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-04-25 08:20:5385.240.173.2512078
QakBot
Offline
Yes (2023-04-25 08:25:03 UTC)2023-06-16 16:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 85.240.173.251. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-06-15 09:20:1086d04c23e01dee18584a919472874806jsVirustotal results 5.08%
n/a
2023-06-14 16:34:184b773a0dcdedffe32ed1ce4ca68c9092jsVirustotal results 1.69%
n/a
2023-06-14 16:34:11051ca5b22662dc01d89022625def3327zipn/a
n/a
2023-06-14 16:12:5315ed589908a80c2e8db14f6ad850e881Executable exeVirustotal results 27.14%
n/a
2023-04-24 23:21:53eeddf56eade6b9e49e6093145ca0db42DLL dllVirustotal results 15.71%
Quakbot