Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 92.97.119.138 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:92.97.119.138
Hostname:bba-92-97-119-138.alshamil.net.ae
AS number:AS5384
AS name:EMIRATES-INTERNET Emirates Internet
Country:- AE
First seen:2023-05-02 15:15:58 UTC
Last online:2023-05-03 06:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2023-05-02 15:15:5892.97.119.1382222
QakBot
Offline
Yes (2023-05-02 15:20:12 UTC)2023-05-03 06:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 92.97.119.138. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-05-25 10:37:09a97871b7b14661d0bfbf8ec6375b2f90DLL dlln/a
Quakbot
2023-05-05 14:09:0484ffeedea458285aa02b115b776d9176DLL dllVirustotal results 37.68%
Quakbot
2023-05-03 21:46:39b932e1ff0de6e0bdde44c9851e9c840dDLL dllVirustotal results 8.82%
Quakbot
2023-05-03 20:54:2374445590034a14e4d0b55bc589a342c0DLL dllVirustotal results 15.62%
Quakbot