Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 103.253.107.156 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:103.253.107.156
Hostname:go1.lacak-mobil.com
AS number:AS45298
AS name:INTERLINK-TECH-AS-ID INTERLINK TECHNOLOGY, PT
Country:- ID
First seen:2021-08-01 00:47:35 UTC
Last online:2021-09-16 21:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-08-01 00:47:35103.253.107.1567443
Dridex
Online
2021-09-16 21:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 103.253.107.156. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-08-19 22:38:2737851ff8d9760022b767b171a69be232Executable exeVirustotal results 71.43%
Dridex
2021-07-31 19:18:23870d4a5e6be7fd07f7f651544d2d8bc1Executable exeVirustotal results 57.97%
Dridex
2021-07-31 19:03:09a66dbdea71c220e57325e20d01516820Executable exeVirustotal results 47.14%
Dridex