Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 90.78.147.141 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:90.78.147.141
Hostname:lfbn-poi-1-1207-141.w90-78.abo.wanadoo.fr
AS number:AS3215
AS name:France Telecom - Orange
Country:- FR
First seen:2023-04-16 10:52:01 UTC
Last online:2023-08-25 06:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-04-16 10:52:0190.78.147.1412222
QakBot
Offline
Yes (2023-04-16 10:55:03 UTC)2023-08-25 06:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 90.78.147.141. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-05-30 20:45:59ab8ef3423324168d06b2d122f75ca130msiVirustotal results 3.77%
n/a
2023-05-30 20:45:54e35727b10193fe55df216a1f9d166997msiVirustotal results 5.00%
n/a
2023-05-30 15:54:44665afc8f8b7972f427fe1bd90d263032msin/a
n/a
2023-04-14 08:22:1828e8674f58ce67580ad3ab879e2d5ea9DLL dlln/a
Quakbot
2023-04-14 02:13:05aa9c7cbdc2c1f2f61a82e67f02148390wsfn/a
Quakbot
2023-04-14 02:08:0968f2b3c0239c4271c21a1e9aa05169f6DLL dlln/a
Quakbot
2023-04-14 00:53:33aad6af83cd928102fc0ba76cf69ee58fDLL dlln/a
Quakbot
2023-04-13 23:24:45966e04d1ed2184ab72cce34eefaea56aDLL dlln/a
Quakbot
2023-04-13 22:56:02748daf41288130e531d01f8f7d22d335DLL dlln/a
Quakbot
2023-04-13 19:45:0878b78f6435359c173912611614d9aed4DLL dlln/a
Quakbot