Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 94.28.78.200 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:94.28.78.200
Hostname:n/a
AS number:AS12772
AS name:ENFORTA-AS Enforta Autonomous System
Country:- RU
First seen:2021-04-09 06:56:12 UTC
Last online:2021-05-06 06:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-04-09 06:56:1294.28.78.200447
TrickBot
Online
2021-05-06 06:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 94.28.78.200. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-05-06 06:15:52792ec6ededf5fb726a94a6bc99ce8199Executable exen/a
TrickBot
2021-05-06 05:55:341846355f640127ee0b5dfb77521f68f1Executable exeVirustotal results 33.33%
TrickBot
2021-05-06 05:55:15741744afae070272b7d3814b301acf22Executable exeVirustotal results 34.78%
TrickBot
2021-05-06 05:55:155f2d9818089fb72035f7d9613c679c5eExecutable exeVirustotal results 34.78%
TrickBot
2021-05-06 05:53:45a43fa23e973cd4ede86c4fe369ba4766Executable exeVirustotal results 28.36%
TrickBot
2021-05-05 23:42:2070406711e07b1e49eeac290381e468f2Executable exen/a
TrickBot
2021-05-05 23:26:12f70a1678f8a0a1919f9f460738bf3a85Executable exeVirustotal results 21.74%
TrickBot
2021-05-05 22:25:33a7dda02650af59e249de4476ddf4fd68Executable exen/a
TrickBot
2021-05-05 19:10:23701c0bf020a31186cd8e2a57e2f2fdfbExecutable exen/a
TrickBot
2021-05-05 15:04:15e027a1f69e26d32a78ac0b66f438653fExecutable exeVirustotal results 28.99%
TrickBot
2021-05-05 12:35:50c7726f394f582e88ed300704df90bef6Executable exeVirustotal results 30.88%
TrickBot
2021-05-05 11:50:21ab9a3a24202272b3fdd0124b9d4097a6Executable exeVirustotal results 51.43%
n/a
2021-05-05 10:22:23bbaf9829ffbd62856e4c81958d3ad175Executable exeVirustotal results 36.23%
TrickBot
2021-05-05 09:42:41c820c5e76ede29843f345bd70232843bExecutable exeVirustotal results 45.71%
TrickBot
2021-05-04 14:46:28c9964c315a0d85ba4894d541816cf676Executable exen/a
TrickBot
2021-05-04 10:41:18a26fde73bb8c8b7c6d42e5a52cc1e2f9Executable exen/a
n/a
2021-05-04 07:21:146f7843c746a268db799d8b5159c78510Executable exen/a
TrickBot
2021-05-04 06:29:12b276dad12e6a059024fe543931e906edExecutable exen/a
TrickBot
2021-05-04 05:03:5739f265cf1dd63b49a849666c5210f072Executable exen/a
n/a
2021-05-02 19:08:299af92571e4172bb6ec0c8f85e970788eExecutable exeVirustotal results 24.64%
TrickBot
2021-05-01 06:44:02efb4454c98df955edb4d692e4f2ca41bExecutable exeVirustotal results 78.57%
TrickBot
2021-04-29 08:18:42d4ef319696b93b54a62eda5aa2a6c917Executable exeVirustotal results 84.29%
TrickBot
2021-04-29 05:07:43c722a24ce61de37bbf8c25f2a2fdb9ddDLL dllVirustotal results 20.29%
n/a
2021-04-22 17:53:01ac2b2336004ae55d79e225ae4634b9caDLL dllVirustotal results 11.76%
TrickBot
2021-04-20 19:59:18a46423d9402c3cdb94c986d35251457fExecutable exeVirustotal results 42.65%
TrickBot
2021-04-12 14:33:56cbea511bd35f247e4b4bf7cc5a3a7cbdDLL dlln/a
n/a
2021-04-09 14:15:110b7c11713bfc111446059427ce81a8c6Word file xlsn/a
TrickBot
2021-04-09 05:30:15921e40bc31832601d0c933d5878958b0Executable exeVirustotal results 75.71%
TrickBot