Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 85.7.61.22 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:85.7.61.22
Hostname:22.61.7.85.dynamic.wline.res.cust.swisscom.ch
AS number:AS3303
AS name:SWISSCOM Swisscom Switzerland Ltd
Country:- CH
First seen:2022-11-28 13:32:07 UTC
Last online:2023-03-15 08:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2022-11-28 13:32:0785.7.61.222222
QakBot
Offline
Yes (2022-11-28 13:35:08 UTC)2023-03-15 08:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 85.7.61.22. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-01-31 14:50:58af9177a9842ebb006bcce95446e82e95DLL dllVirustotal results 20.59%
Quakbot
2022-12-06 12:54:5053af8719e99f66a2586b0d9e93d1f38fvhdn/a
Quakbot
2022-12-06 12:48:5575e5c2e7e3a6091cada07d9eba405b0ezipn/a
n/a
2022-11-29 05:55:39ea858f5b14320acb51565911c234d576ison/a
n/a
2022-11-29 05:55:261da5f7cdaf51648ca6370a7c3be4788dzipn/a
n/a
2022-11-28 13:09:11638f6bca78675365d31e3903b1f2756aison/a
n/a
2022-11-28 13:09:03cdc5da43956726646ad0efdc6be15858zipn/a
n/a