Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 161.97.68.105 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:161.97.68.105
Hostname:vmi403065.contaboserver.net
AS number:AS51167
AS name:CONTABO
Country:- DE
First seen:2022-07-01 17:21:05 UTC
Last online:2022-07-06 00:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2022-07-01 17:21:05161.97.68.1058080
Emotet
Offline
Yes (2022-07-01 17:25:03 UTC)2022-07-06 00:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 161.97.68.105. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2022-07-06 14:50:57e6ad17f45680196fad21716a81e85bc9Word file xlsn/a
Heodo
2022-07-06 14:08:18a65fe2f053152bb4c442e895441693ebDLL dlln/a
Heodo
2022-07-06 13:54:31a1243554460768febda518d984a72281Word file xlsVirustotal results 50.85%
SilentBuilder
2022-07-06 13:13:10cfaa70635ac7f50b81b3d2dd253f1b4aDLL dlln/a
Heodo
2022-07-06 12:07:2800f6904524de30b6ec7136dd0a65e114DLL dlln/a
Heodo
2022-07-06 11:31:542a21e778b8ff0589c9f2ffd5db8e4487DLL dlln/a
Heodo
2022-07-06 11:27:522a101dbc88425909d3fe09c48a7b14d4Word file xlsn/a
SilentBuilder
2022-07-06 10:37:28266c2fba5069bd78c089049b1bb7e31cDLL dlln/a
n/a
2022-07-06 08:11:010e7469287777e3d219288a423bdd22d0Word file xlsVirustotal results 60.34%
Heodo
2022-07-06 08:10:513035cbb811f7a4f35dbb14a1d91f0336Word file xlsVirustotal results 54.39%
SilentBuilder
2022-07-06 08:10:43aa09579fddd71e7fe1701eb3d576ffd7Word file xlsVirustotal results 65.52%
Heodo
2022-07-05 16:42:28448da6294bb47a859a6d7c2589e19fe0DLL dlln/a
Heodo
2022-07-05 14:35:17781859ddb3413ec830098f9788e1ea77DLL dlln/a
Heodo
2022-07-05 13:54:19c3d71f860c941fb9a4a16f5b1ebf0c34Word file xlsVirustotal results 46.55%
SilentBuilder
2022-07-05 13:37:22751e1976edcce288650b05f08f210fafDLL dlln/a
Heodo
2022-07-05 12:34:13fe0f32d6a29155a93ed602592c905140DLL dlln/a
Heodo
2022-07-05 10:24:528f8db364015652eade8d7f5c16f08404DLL dllVirustotal results 20.90%
Heodo
2022-07-05 10:24:4533fda9a8fd3cbf6bac4a0e039f96b61eDLL dllVirustotal results 22.39%
Heodo
2022-07-05 10:23:5939360e0ba72a7d734802c1ec9b3d9bd3DLL dlln/a
Heodo
2022-07-05 09:04:286b21809ddf73cf5f57952cd19948e0deWord file xlsVirustotal results 50.00%
n/a
2022-07-05 04:57:0867d22980ec6fa8ad447e357d7ddfbb6aDLL dllVirustotal results 14.71%
Heodo
2022-07-05 04:54:011ec656aec7f44fa71387ef577df50135DLL dllVirustotal results 11.76%
Heodo
2022-07-04 11:53:464c7bb5a12d49232df23175c4af2501c2Word file xlsn/a
n/a
2022-07-04 11:22:3561f8254e568775e8e5922575958817acDLL dlln/a
Heodo
2022-07-04 10:15:24314e9203e529e62528138da92fc85543Word file xlsVirustotal results 53.45%
Heodo
2022-07-04 10:14:05faa234ac961d743bc4fd7d4554ad6c6eWord file xlsn/a
SilentBuilder
2022-07-04 10:12:52a6868a44765d931298a7be5aa1dc9dc4Word file xlsVirustotal results 52.54%
n/a
2022-07-04 10:08:32f6cde794aa4b589f33f42fb392490e0eWord file xlsVirustotal results 62.71%
SilentBuilder
2022-07-04 10:07:49a3d39f51ca2556c999febf4336744f49Word file xlsVirustotal results 50.85%
SilentBuilder
2022-07-04 09:26:536168774000ad16464c23f520312fa5b6Word file xlsVirustotal results 57.63%
SilentBuilder
2022-07-04 08:41:58fda9b005a725d9f698e24b16c3b0eb2aWord file xlsn/a
SilentBuilder
2022-07-04 08:37:153927122b6f924a67ec6c7d4c6264d864DLL dlln/a
Heodo
2022-07-04 05:18:09b0290d76c783c96fc6ca7195d73c3907DLL dlln/a
Heodo
2022-07-04 03:50:24d129ebf928d2ce47640bbce4deb8259dDLL dlln/a
Heodo
2022-07-04 01:30:1193f7f6850ec13ab10cb09a996520e6dbDLL dlln/a
Heodo
2022-07-02 17:09:531df5ef87178b67c7c273a9ab4d43692cDLL dlln/a
Heodo
2022-07-02 10:25:26b436109d48d9970582aa06429516bc90DLL dllVirustotal results 25.00%
Heodo
2022-07-02 09:38:135d054ae84a649e90abe633d011c61237DLL dllVirustotal results 26.47%
Heodo