Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 103.164.180.66 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:103.164.180.66
Hostname:n/a
AS number:AS141911
AS name:IDNIC-DISKOMINFO-BANGKALAN-AS-ID Dinas Komunikasi dan Informatika Kabupaten Bangkalan
Country:- ID
First seen:2021-05-23 12:57:48 UTC
Last online:2022-01-18 10:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-05-23 12:57:48103.164.180.66447
TrickBot
Offline
Yes (2021-11-25 15:36:26 UTC)2022-01-18 10:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 103.164.180.66. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-07-19 09:33:590c277ac500249560e40e8a1a4d9c8abeDLL dllVirustotal results 22.39%
TrickBot
2021-07-16 20:29:270e70f01a7a91253d8f50e0d678b42984DLL dllVirustotal results 47.06%
n/a
2021-07-03 16:56:206a28375880d7f1c3b5ca273673b063beDLL dllVirustotal results 52.24%
n/a
2021-07-03 16:28:365bfaa397903128112daa337ab17d87ddDLL dllVirustotal results 58.82%
n/a
2021-07-01 18:38:28838689cc6362316224a3f3a28a12f108Executable exeVirustotal results 64.29%
TrickBot
2021-06-23 15:18:35617b8091846f138e370983b27a76f7f5Executable exeVirustotal results 27.14%
TrickBot
2021-06-23 04:39:17e0985f5435f7b0ceeafe46536de75450Executable exen/a
TrickBot
2021-06-23 04:29:11fdde25798fe58d9b80f88d9dedd90ac1Executable exen/a
TrickBot
2021-06-23 01:41:46441637022e759c1023b8aae8b4bc41e5Executable exen/a
TrickBot
2021-05-22 21:25:05c29c251477d29792a0f91fa15bbf1dbcExecutable exen/a
TrickBot