Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 88.87.15.96 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:88.87.15.96
Hostname:n/a
AS number:AS34754
AS name:TELNET-AS Bulgaria, Veliko Tarnovo
Country:- BG
First seen:2021-08-01 21:21:32 UTC
Last online:2021-08-30 07:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-08-01 21:21:3288.87.15.96443
TrickBot
Offline
No2021-08-30 07:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 88.87.15.96. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-09-30 02:58:3257edead650db166ff2bd7049f4795021Executable exen/a
TrickBot
2021-08-04 21:54:060c6253f8006e716d643a590a0214f475DLL dllVirustotal results 40.58%
TrickBot
2021-08-01 23:20:40e087e29fbf625a8b3640692c309bdeacDLL dllVirustotal results 42.03%
TrickBot
2021-08-01 23:13:19b89149b71e81d61dd8fb35a6fae6a7f0DLL dllVirustotal results 48.48%
TrickBot
2021-08-01 23:02:58cfe46def985e296269bb83b8bd636252Executable exeVirustotal results 57.35%
TrickBot
2021-08-01 20:57:556f321ae60b3158816f7a527c44b5951aDLL dllVirustotal results 16.95%
TrickBot