Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 98.187.21.2 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:98.187.21.2
Hostname:wsip-98-187-21-2.ri.ri.cox.net
AS number:AS22773
AS name:ASN-CXA-ALL-CCI-22773-RDC
Country:- US
First seen:2022-11-17 18:49:32 UTC
Last online:2023-08-25 19:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2022-11-17 18:49:3298.187.21.2443
QakBot
Offline
Yes (2022-11-17 18:50:08 UTC)2023-08-25 19:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 98.187.21.2. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2023-06-23 17:22:07b22ad38812d6d62a38f9da89cbe6e233jsVirustotal results 23.73%
Quakbot
2023-06-23 17:21:3727df4dcb273e5e3ab31e5b777e8ff6c6jsn/a
n/a
2023-06-23 17:20:17826bef7cc89f65b8c9422d3bc8b88980jsVirustotal results 1.72%
Quakbot
2023-06-23 17:19:530ee8ea053b9fe7157eabf88cb0c88263jsn/a
Quakbot
2023-06-23 04:52:2071e4345aa4c17e6b13221a83b7f55133jsVirustotal results 3.39%
n/a
2023-06-23 04:51:46b6edeffb9267c868f42d68bc33a6f047jsVirustotal results 3.39%
n/a
2023-06-23 00:13:0692ce4b719618935d8dae0fbc6ceab12fjsn/a
n/a
2023-06-23 00:12:4286fafbdba370101f32581922ed84978ajsn/a
n/a
2023-06-23 00:12:19199965002e642b40151d4e71e7f99472jsVirustotal results 1.72%
n/a
2023-06-22 21:16:5778e010c77733672c24c9bf7de6299808jsn/a
n/a
2023-06-22 20:59:47f77c9d6dea10e415c0d38aef416c7138jsn/a
n/a
2023-06-22 20:59:15cd715954fccde30a32dde3e912bca686jsn/a
n/a
2023-06-22 20:57:41cd9c1cc769a129f8538c572a5d884153jsn/a
n/a
2023-06-22 20:57:088edd439d07deb5ad3387d88e8d504a0ajsVirustotal results 1.72%
n/a
2023-06-22 18:36:21722d410b90a62bc604735798be197140jsn/a
n/a
2023-06-22 18:23:5753bd72ea9f6fb42ec84aab521196fb2bjsVirustotal results 1.69%
n/a
2023-06-01 16:47:431ddfcbdbe07f551e561be159a73d1c99msin/a
n/a
2023-06-01 15:41:26e381e9903abc3b3c725c53838467a257msiVirustotal results 6.67%
n/a
2023-06-01 15:41:21a657553449746c482dacfe3b19119b7ajsn/a
n/a
2023-06-01 15:41:177db0f9f78fdb463ecb70ed9220168db3zipn/a
n/a
2022-12-28 17:35:53b6a14a209a245b0fc6276b4c9fedac3fzipVirustotal results 1.56%
n/a
2022-12-23 01:31:1097b71513e2bfc984227220b56fff6af1zipn/a
Quakbot
2022-12-22 16:21:44c88c08ee6acd9955f5e6c92433fe5f1bzipn/a
n/a
2022-12-20 18:33:56a8b218070da1346c51e6abcb0728b827isoVirustotal results 11.48%
n/a
2022-12-20 18:33:437fe7e2aa08f53fd222db8cf944d4788ezipn/a
n/a
2022-12-16 08:31:1922f52ec296b0d4ec03d436a28a85f3b1DLL dllVirustotal results 26.47%
Quakbot
2022-12-16 05:11:04ffd52a875ed2a58e68d397b2a4e577b3zipn/a
Quakbot
2022-12-15 23:54:15ba0ca01029fa22351a0b81e3a44b8b90DLL dlln/a
n/a
2022-11-17 19:10:39ba1953484c6e1a848e188f4fdf95546eDLL dlln/a
n/a
2022-11-17 19:10:0321ecde6d5a54c108416761b9bd4be47czipn/a
Quakbot