Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 107.170.64.97 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:107.170.64.97
Hostname:n/a
AS number:AS14061
AS name:DIGITALOCEAN-ASN
Country:- US
First seen:2021-07-13 08:31:22 UTC
Last online:2021-11-19 13:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2021-07-13 08:31:22107.170.64.979043
Dridex
Online
Yes (2021-11-25 15:33:15 UTC)2021-11-19 13:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 107.170.64.97. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-07-13 13:29:262d520cfd936ee3a35f6970933b640117Executable exeVirustotal results 35.71%
Dridex
2021-07-13 13:29:2035582e92954505b57ed8a0e2edafe5b5Executable exeVirustotal results 38.24%
Dridex
2021-07-13 13:29:0169542ec278d3f1d6022f141da9202400Executable exeVirustotal results 40.58%
Dridex
2021-07-13 13:28:591b30846f1a47ce9da57676ba4878141cExecutable exeVirustotal results 37.14%
Dridex
2021-07-13 13:28:51480d0a6963e82410d183038ca5e3dab9Executable exeVirustotal results 34.33%
Dridex
2021-07-13 08:07:25281c83016993820e5d780389a781b7d6Executable exeVirustotal results 57.97%
Dridex