Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 103.18.108.116 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:103.18.108.116
Hostname:ladder.im
AS number:AS132680
AS name:NET1-AS-AP Net Virtue Pty Ltd
Country:- AU
First seen:2021-03-22 12:53:59 UTC
Last online:2021-04-11 18:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-03-22 12:53:59103.18.108.1166601
Dridex
Online
2021-04-11 18:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 103.18.108.116. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-03-22 17:24:21c83740682ecdfa3688ac183555c10e26DLL dlln/a
Dridex
2021-03-22 17:23:177565ff52f7db1254ebc4e7f667f25111DLL dlln/a
Dridex
2021-03-22 17:23:17b7138f28f31cbab8255493c5559ddaddDLL dlln/a
Dridex
2021-03-22 15:58:06fe088c5fc467685a84cdc4886c55c859DLL dllVirustotal results 4.35%
Dridex
2021-03-22 14:08:591ecc83ee713bc1a95b7342570cbfa129DLL dlln/a
Dridex
2021-03-22 14:08:26b67a41c6192e9ebe9de6e5c7413c1396DLL dlln/a
Dridex
2021-03-22 14:08:2643c136e054c804d6d98d5bfcd5372ac5DLL dlln/a
Dridex