Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 95.85.255.220 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:95.85.255.220
Hostname:nat-95-85-255-220.metronet.cz
AS number:AS43708
AS name:METRONET
Country:- CZ
First seen:2021-06-01 06:28:02 UTC
Last online:2021-06-13 17:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-06-01 06:28:0295.85.255.220443
TrickBot
Offline
2021-06-13 17:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 95.85.255.220. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-07-25 19:10:118026fc38afee1976c4d74ce9943494abDLL dllVirustotal results 26.09%
n/a
2021-07-16 20:04:4420dd1982a5ac8967d8dfa660f9d17fe9DLL dllVirustotal results 47.83%
n/a
2021-05-31 17:02:22bdc01d709a525793f0e1d08ae0f15b35DLL dllVirustotal results 60.29%
TrickBot