Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 128.199.192.135 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:128.199.192.135
Hostname:n/a
AS number:AS14061
AS name:DIGITALOCEAN-ASN
Country:- SG
First seen:2021-09-20 16:11:49 UTC
Last online:2021-10-19 04:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-09-20 16:11:49128.199.192.1356602
Dridex
Online
2021-10-19 04:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 128.199.192.135. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-09-21 06:42:1767ef650f5a6370328c9bd22871bde6ccDLL dllVirustotal results 33.33%
Dridex
2021-09-21 06:42:117da99247e463ff8628f3098907d7337bDLL dllVirustotal results 22.39%
Dridex
2021-09-21 06:42:0686ce09d8758a61db05aa099de62b1935DLL dllVirustotal results 26.47%
Dridex
2021-09-21 06:42:0277f4a188fcb8ec4f75e227cc9f9313c9DLL dllVirustotal results 22.39%
Dridex
2021-09-20 18:26:57f776730fa7bfed5c7e98aa0a5e1ebd34DLL dllVirustotal results 26.87%
Dridex
2021-09-20 18:26:370f0140c33f1daa9f268a64687bb0d6fdDLL dllVirustotal results 20.90%
Dridex
2021-09-20 18:03:028b22df205e4c8fa137cf4535c17f9615DLL dllVirustotal results 19.40%
Dridex
2021-09-20 18:01:56b27c5ea73724943b7b14ba9704c88991Word file xlsxVirustotal results 18.03%
Dridex
2021-09-20 17:55:2043730fda714b3131edfd918ab631ee10DLL dllVirustotal results 20.90%
Dridex
2021-09-20 16:19:09391e6713774c5b62da0192b2ed750d23DLL dlln/a
Dridex
2021-09-20 15:53:40fb1eca9d12608067ec4ee0990f63ee13DLL dlln/a
Dridex