Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 138.197.133.25 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:138.197.133.25
Hostname:n/a
AS number:AS14061
AS name:DIGITALOCEAN-ASN
Country:- CA
First seen:2021-07-05 18:54:14 UTC
Last online:2021-07-07 19:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-07-05 18:54:14138.197.133.25443
Dridex
Offline
Yes (2022-11-21 22:15:04 UTC)2021-07-07 19:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 138.197.133.25. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-07-24 14:43:181f1efb96e89f7c270eb5b274df12d98cExecutable exeVirustotal results 63.08%
Dridex
2021-07-19 16:24:04a2d698818249bb3521e0a0b9ea0f24dfExecutable exeVirustotal results 60.87%
Dridex
2021-07-16 20:02:54dcb279b63c56c97d77ae74450dfb2ed3Executable exen/a
Dridex
2021-07-15 06:17:07a464212cf1f97f5c23d276d39e301ab9Executable exeVirustotal results 63.77%
Dridex
2021-07-07 20:21:29dd1548461f7c7b1bb34d082bdd5bb4d0Executable exen/a
Dridex
2021-07-07 20:17:05e919ba3fa6a6107a63bb5aeda634c8deExecutable exen/a
Dridex
2021-07-06 18:41:17a94c3ee14ed4f98c7e51e6fc79ba17a0Executable exeVirustotal results 61.43%
Dridex
2021-07-06 16:45:00d90980b09670302f45c309eeb5b5228cExecutable exen/a
Dridex
2021-07-05 17:40:287425d5f4f1967fd02b05dabd91c8fd2aExecutable exeVirustotal results 57.14%
Dridex
2021-07-05 17:39:5322ebbc0cdbaede677d6db00590bda304Executable exen/a
Dridex
2021-07-05 17:39:4510d51d8e8953c3fd6928db76dc8df09cExecutable exeVirustotal results 58.21%
Dridex
2021-07-05 17:33:563e1bd141bbf73a7530f332da42bbbffeExecutable exen/a
Dridex
2021-07-05 17:32:06dc30e25a97c6ad4710dcd85131309e09Executable exeVirustotal results 55.38%
Dridex
2021-07-05 17:30:16f4c25b8397aade621c80a2a7f4bba196Executable exeVirustotal results 59.70%
Dridex
2021-07-05 17:24:27a279d56bf90afdaf582ee6a1344156c7Executable exeVirustotal results 57.14%
Dridex
2021-07-05 17:21:5505604a81265256323eba82bdf21342f6Executable exeVirustotal results 60.87%
Dridex