Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with QuantLoader

Database Entry


Malware:QuantLoader
First seen:2018-03-27 00:56:27 UTC
Last seen:2018-04-03 19:30:38 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2018-04-03 19:30:3806b037b0620a1ba6034122d829f9daebVirustotal results 38/65 (58.46%) QuantLoader186.2.168.150:443
2018-04-03 19:30:3806b037b0620a1ba6034122d829f9daebVirustotal results 38/65 (58.46%) QuantLoader186.2.168.150:443
2018-03-29 16:48:54993e99d8463a42df283121864ec9d66fVirustotal results 18/66 (27.27%) QuantLoader46.28.204.81:443
2018-03-29 16:48:54993e99d8463a42df283121864ec9d66fVirustotal results 18/66 (27.27%) QuantLoader46.28.204.81:443
2018-03-27 00:56:2792769328e49f5c5cdd4d3967c8081a6bVirustotal results 8/64 (12.50%) QuantLoader46.28.204.81:443
2018-03-27 00:56:2792769328e49f5c5cdd4d3967c8081a6bVirustotal results 8/64 (12.50%) QuantLoader46.28.204.81:443