Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 87.220.204.177 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:87.220.204.177
Hostname:177.204.220.87.dynamic.jazztel.es
AS number:AS12479
AS name:UNI2-AS
Country:- ES
First seen:2023-05-02 15:15:57 UTC
Last online:2023-05-02 20:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-05-02 15:15:5787.220.204.1772222
QakBot
Offline
Yes (2023-05-02 15:20:11 UTC)2023-05-02 20:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 87.220.204.177. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-05-25 19:57:384d6b0ba75e2b1aae21ea9676cef30a96DLL dlln/a
Quakbot
2023-05-24 04:00:33c2476efbe47c464242c2943ab9963f2cDLL dlln/a
Quakbot
2023-05-03 21:55:247701685e8f49bc5682ac4c1e72157861DLL dllVirustotal results 14.49%
Quakbot
2023-05-03 21:47:489be89e3f07a6e1e359c3abf8b4803679DLL dllVirustotal results 13.04%
Quakbot
2023-05-03 21:36:06149ca83d9f14977098c979c265079b79DLL dllVirustotal results 14.49%
Quakbot
2023-05-03 21:03:121f3993c2c8cbdaa20fc09283d9350a4dDLL dllVirustotal results 15.94%
Quakbot