Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 104.168.155.113 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:104.168.155.113
Hostname:client-104-168-155-113.hostwindsdns.com
AS number:AS54290
AS name:HOSTWINDS
Country:- US
First seen:2021-07-12 13:56:16 UTC
Last online:2021-07-30 04:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-07-12 13:56:16104.168.155.113443
Dridex
Offline
2021-07-30 04:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 104.168.155.113. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-07-12 12:35:13891100f2b19f759a940f97b2de1f79deExecutable exeVirustotal results 37.31%
Dridex
2021-07-12 12:17:524b8234f358697aa434b7440ae1041675Executable exeVirustotal results 38.81%
Dridex
2021-07-12 12:12:0379c8b89aec956e09c71d49a650475ba7Executable exeVirustotal results 37.68%
Dridex