Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 103.109.247.13 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:103.109.247.13
Hostname:n/a
AS number:AS136883
AS name:IDNIC-UNUSA-AS-ID Universitas Nahdlatul Ulama Surabaya
Country:- ID
First seen:2021-08-01 00:47:34 UTC
Last online:2021-09-16 21:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-08-01 00:47:34103.109.247.1310443
Dridex
Online
2021-09-16 21:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 103.109.247.13. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-08-19 22:38:2737851ff8d9760022b767b171a69be232Executable exeVirustotal results 71.43%
Dridex
2021-08-14 19:09:13f4b0f413250bb2f367d200b17f23e5ccExecutable exeVirustotal results 69.23%
Dridex
2021-08-13 16:45:53ac4551fe968a7926697b5e6eabcf06b0Executable exeVirustotal results 71.21%
Dridex
2021-08-12 08:21:58048ff436d13f8fa09c612a2a45f311f6Executable exen/a
Dridex
2021-07-31 19:18:23870d4a5e6be7fd07f7f651544d2d8bc1Executable exeVirustotal results 57.97%
Dridex
2021-07-31 19:03:09a66dbdea71c220e57325e20d01516820Executable exeVirustotal results 47.14%
Dridex