Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 103.253.107.156 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:103.253.107.156
Hostname:go1.lacak-mobil.com
AS number:AS45298
AS name:INTERLINK-TECH-AS-ID INTERLINK TECHNOLOGY, PT
Country:- ID
First seen:2021-08-01 00:47:35 UTC
Last online:2022-04-18 03:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-08-01 00:47:35103.253.107.1567443
Dridex
Offline
Yes (2021-11-25 15:36:26 UTC)2022-04-18 03:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 103.253.107.156. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-10-14 19:58:1239abd52ce1975962c5f9f112fe3e4025Executable exeVirustotal results 75.00%
Dridex
2021-10-10 17:03:41002143bd32abb5db782b513b2fa0b2caExecutable exeVirustotal results 73.91%
Dridex
2021-08-19 22:38:2737851ff8d9760022b767b171a69be232Executable exeVirustotal results 71.43%
Dridex
2021-07-31 19:18:23870d4a5e6be7fd07f7f651544d2d8bc1Executable exeVirustotal results 57.97%
Dridex
2021-07-31 19:03:09a66dbdea71c220e57325e20d01516820Executable exeVirustotal results 47.14%
Dridex