Feodo Tracker :: 5.196.192.222

C&C Information

Feodo C&C:5.196.192.222
Version:E
Host status:offline
Hostname:padowan.djekl.co.uk
Spamhaus SBL:Not listed
AS number:AS16276
AS name:OVH, FR
Country:- DE
Firstseen (UTC):2017-09-22 07:26:13
Lastseen (UTC):2017-10-11 13:50:02

Referencing malware binaries

Latest 100 malware binaries referencing this Feodo C&C:

Timestamp (UTC)MD5 HashFilesizeVTHostPortMethod
2017-10-10 14:10:51e00871b06992df853b8aee28f86867b8102'400 bytesVirustotal results 38/65 (58.46%) 5.196.192.222:80808080POST
2017-10-10 09:03:05dce2390902573f681ce88c2ae97b4c5c221'696 bytesVirustotal results 23/65 (35.38%) 5.196.192.222:80808080POST
2017-10-10 07:24:04c0ed7f9a6a8fd9f154db40d6867e30ee118'784 bytesVirustotal results 33/65 (50.77%) 5.196.192.222:80808080POST
2017-10-08 14:03:132eb40011368b47bb2d5afb0917d7c72793'184 bytesVirustotal results 40/66 (60.61%) 5.196.192.222:80808080POST
2017-09-24 14:37:31a2800874d9ee476526e262babe4f96ff92'160 bytesVirustotal results 21/65 (32.31%) 5.196.192.222:80808080POST
2017-09-24 12:36:59c8ab85365b6f0f5ed6e7b08cde8247e4102'400 bytesVirustotal results 31/65 (47.69%) 5.196.192.222:80808080POST
2017-09-24 12:07:1686e3ecb0e7a36a0d6e579618f4dd630e102'400 bytesVirustotal results 15/65 (23.08%) 5.196.192.222:80808080POST
2017-09-23 07:47:1348569438a353a811f58dbfacf279efb7102'400 bytesVirustotal results 12/65 (18.46%) 5.196.192.222:80808080POST
2017-09-23 06:42:30f82206c16bb6d69891f9bda815d64b2b102'400 bytesVirustotal results 16/65 (24.62%) 5.196.192.222:80808080POST
2017-09-23 05:43:15e2874fcc4cdd3effca8dd429a7a2dc64102'400 bytesVirustotal results 26/65 (40.00%) 5.196.192.222:80808080POST
2017-09-23 05:42:47b0d780e56155000521f458f0b99d8a8798'304 bytesVirustotal results 13/64 (20.31%) 5.196.192.222:80808080POST
2017-09-23 05:42:45ab53addc9912939c799d39736fd9576b102'400 bytesVirustotal results 16/65 (24.62%) 5.196.192.222:80808080POST
2017-09-23 05:42:43a356a38d27ee89063e81ae93e886b5cd102'400 bytesVirustotal results 13/65 (20.00%) 5.196.192.222:80808080POST
2017-09-23 05:42:0550530fe45f302ad28cec1137768967ab102'400 bytesVirustotal results 23/65 (35.38%) 5.196.192.222:80808080POST
2017-09-23 05:41:5227b685d8a45976f930f8aaac75466d8c102'400 bytesVirustotal results 32/65 (49.23%) 5.196.192.222:80808080POST
2017-09-23 05:41:51253fa27acba470584dc19ebaa0436daf102'400 bytesVirustotal results 25/65 (38.46%) 5.196.192.222:80808080POST
2017-09-23 05:41:441e6035d785fa30c7ad440f3f9ba0c036106'496 bytesVirustotal results 26/65 (40.00%) 5.196.192.222:80808080POST
2017-09-23 05:41:41188c2a1183a0ca118457c612799e51d4102'400 bytesVirustotal results 45/65 (69.23%) 5.196.192.222:80808080POST
2017-09-22 21:32:19c3e690763307a7372184e38e95e8ca34110'592 bytesVirustotal results 39/63 (61.90%) 74.50.61.177:70808080POST
2017-09-22 21:16:00a605de069193013d90dbbfaeceaf41a5110'592 bytesVirustotal results 38/64 (59.38%) 74.50.61.177:70808080POST
2017-09-22 19:26:400a3e8879d77a9e5f72e90326660f79de233'472 bytesVirustotal results 45/65 (69.23%) 74.50.61.177:70808080POST
2017-09-22 15:04:4173caf8f3bf5771dde7f40236502b0b99102'400 bytesVirustotal results 11/65 (16.92%) 5.196.192.222:80808080POST
2017-09-22 14:18:44872cd99588bf402dd6534163fe0c4be2102'400 bytesVirustotal results 9/65 (13.85%) 5.196.192.222:80808080POST
2017-09-22 12:09:4453139b23bed3a46a0668862679b20798211'968 bytesVirustotal results 12/64 (18.75%) 5.196.192.222:80808080POST
2017-09-22 11:13:056610e853c768fcff19610f186489bf67211'968 bytesVirustotal results 16/65 (24.62%) 5.196.192.222:80808080POST
2017-09-22 07:47:18b45191e9cb211dd3d03c70e8f6d3a496106'496 bytesVirustotal results 28/65 (43.08%) 74.50.61.177:70808080POST
2017-09-22 06:52:02625b36d91e941163221bc88733463e3f106'496 bytesVirustotal results 12/65 (18.46%) 193.46.83.9:4438080POST
2017-09-21 18:07:455a9198077fec8423f09ec316896a8903233'472 bytesVirustotal results 16/64 (25.00%) 5.196.192.222:80808080POST
2017-09-21 17:57:104340a0524100fd8ac844754e50a3a2c6233'472 bytesVirustotal results 26/65 (40.00%) 74.50.61.177:70808080POST
2017-09-21 17:38:15144eb8e12341681263984748c9b6cc19233'472 bytesVirustotal results 25/64 (39.06%) 74.50.61.177:70808080POST

Referencing malware binaries: 30