Feodo Tracker :: 199.38.204.218

C&C Information

Feodo C&C:199.38.204.218
Version:E
Host status:offline
Spamhaus SBL:Not listed
AS number:AS13638
AS name:METALINK - Metalink Technologies, Inc., US
Country:- US
Firstseen (UTC):2018-08-30 07:08:13
Lastseen (UTC):2018-09-02 20:46:10

Referencing malware binaries

Latest 100 malware binaries referencing this Feodo C&C:

Timestamp (UTC)MD5 HashFilesizeVTHostPortMethod
2018-09-01 20:57:5833b2cd1da04b5c69d0ef7238a20ab18a196'608 bytesVirustotal results 40/68 (58.82%) 199.38.204.21880GET
2018-09-01 20:06:57bded525c714f8534669cbe06bc278e9b192'512 bytesVirustotal results 41/69 (59.42%) 199.38.204.21880GET
2018-09-01 20:06:46cfdb971701f774d151f51bdbb7857900196'608 bytesVirustotal results 42/68 (61.76%) 199.38.204.21880GET
2018-09-01 19:21:25e7c098a75ce01ddea835d4aaaffc49fb192'512 bytesVirustotal results 42/69 (60.87%) 199.38.204.21880GET
2018-08-31 10:04:32eb60ca257b0e23a65c3bf0e159693f3b78'720 bytesVirustotal results 27/59 (45.76%) 199.38.204.2188080GET
2018-08-31 10:04:30de14a3c0038f91edb45f313bf22e1138192'512 bytesVirustotal results 15/67 (22.39%) 199.38.204.21880GET
2018-08-31 10:04:29da6606ffe7175a7a0687249c04c52e3378'976 bytesVirustotal results 26/61 (42.62%) 199.38.204.2188080GET
2018-08-31 10:04:277ffd97c6be2aabe2c775e5c18a6bed9090'368 bytesVirustotal results 27/61 (44.26%) 199.38.204.2188080GET
2018-08-31 10:04:22401fb2d49a1714d15c6632bfb9fb104691'264 bytesVirustotal results 26/59 (44.07%) 199.38.204.21880GET
2018-08-31 10:04:1922f92f1a50e1d5cd3ed369d119072031192'512 bytesVirustotal results 18/68 (26.47%) 199.38.204.21880GET
2018-08-31 08:20:58e9663c74404701cd9b2b12339ea10d8d88'320 bytesVirustotal results 22/61 (36.07%) 199.38.204.2188080GET
2018-08-31 08:20:57deaa400ab629b22cbc099f8125fb7fed81'024 bytesVirustotal results 23/61 (37.70%) 81.174.148.49:808080GET
2018-08-31 08:20:56ddd7254be91d6655de96cda00dfb20e690'752 bytesVirustotal results 23/61 (37.70%) 199.38.204.21880GET
2018-08-31 08:20:53c90a83d51ea93959bc64c71d38eea3e388'960 bytesVirustotal results 24/60 (40.00%) 199.38.204.2188080GET
2018-08-31 08:20:40abbd60477ce8da7a7c80ffb0dc75c95783'712 bytesVirustotal results 24/59 (40.68%) 199.38.204.2188080GET
2018-08-31 08:20:37a3160797b25d9c506d2c3547545081ff80'384 bytesVirustotal results 24/62 (38.71%) 199.38.204.2188080GET
2018-08-31 08:20:369cc7109d10ee773cab4e84ac83e68da983'840 bytesVirustotal results 23/61 (37.70%) 199.38.204.2188080GET
2018-08-31 08:20:205746495f700fe186e9738274b2674cc194'080 bytesVirustotal results 20/61 (32.79%) 199.38.204.2188080GET
2018-08-31 08:20:1845bed6fe4d35946049cbe0c3d3a97cee82'176 bytesVirustotal results 25/60 (41.67%) 199.38.204.2188080GET
2018-08-31 08:20:15438945b15e122783658ec01ebe9569ec80'640 bytesVirustotal results 20/61 (32.79%) 199.38.204.2188080GET
2018-08-31 08:20:134001a39a3df88939f90f40936c5e9b6b78'336 bytesVirustotal results 24/61 (39.34%) 199.38.204.21880GET
2018-08-31 05:16:039a886038925a8e4df57dacd9c511713d85'248 bytesVirustotal results 19/58 (32.76%) 199.38.204.21880GET
2018-08-31 04:57:42ed3f91543f458829109ead5c3d3660e489'088 bytesVirustotal results 22/61 (36.07%) 199.38.204.21880GET
2018-08-31 04:57:13963bc21fbb88942d4caa9c4e2057dd5992'416 bytesVirustotal results 20/61 (32.79%) 199.38.204.21880GET
2018-08-30 16:52:07a00c36bab239ab20945dddf36257ce8986'016 bytesVirustotal results 19/59 (32.20%) 199.38.204.2188080GET
2018-08-30 16:44:15d09a95221ab6e34499667a1c00d5b5c793'568 bytesVirustotal results 20/61 (32.79%) 199.38.204.21880GET
2018-08-30 16:44:120ca0a9e7c606ce3c5a294cd431db55c578'976 bytesVirustotal results 20/60 (33.33%) 199.38.204.2188080GET
2018-08-30 16:38:08f75bfb6a1f08927f00fdaad4d580dc9379'232 bytesVirustotal results 20/61 (32.79%) 199.38.204.2188080GET
2018-08-30 16:38:0558a067fd61c88de7cb5c356a7f957e0083'584 bytesVirustotal results 20/61 (32.79%) 199.38.204.2188080GET
2018-08-30 14:31:039ec1c280f8971b4afa54a90bd364fec989'088 bytesVirustotal results 20/60 (33.33%) 199.38.204.21880GET
2018-08-30 06:44:4930ba3528c71fd3b46b8cc41f31d9584679'232 bytesVirustotal results 19/61 (31.15%) 189.250.174.245:708080GET
2018-08-30 04:22:26fe5511db7860b5665751f30dee76cc9681'280 bytesVirustotal results 19/60 (31.67%) 199.38.204.218990GET
2018-08-30 04:22:22e47fd3afe861647a0e2afa0699d82cdc83'712 bytesVirustotal results 18/60 (30.00%) 199.38.204.21880GET
2018-08-30 04:22:19cc9a11d2eb87f437ad0b2d8be12700b586'272 bytesVirustotal results 18/60 (30.00%) 199.38.204.218990GET
2018-08-30 04:22:16c3618ba2712f5e2d6e2423f4e9c451af87'168 bytesVirustotal results 18/60 (30.00%) 199.38.204.218990GET
2018-08-30 04:21:56568bbd57755c1f7069f20e580cb46fc885'888 bytesVirustotal results 18/60 (30.00%) 199.38.204.21880GET
2018-08-30 04:21:50346acef91a9296755755a6e57dbc20cc85'760 bytesVirustotal results 19/60 (31.67%) 199.38.204.21880GET
2018-08-29 11:30:08fe2d08ed80ee8f4b2ee18149b021761f86'144 bytesVirustotal results 17/60 (28.33%) 189.250.174.245:708080GET
2018-08-29 09:12:0603e1f64a71fc75be28bd10adef77e1f290'240 bytesVirustotal results 22/59 (37.29%) 199.38.204.21880GET
2018-08-29 01:35:22daf7104f05c1e02e273bbf1a92f07ab5401'408 bytesVirustotal results 29/68 (42.65%) 199.38.204.21880GET

Referencing malware binaries: 40