Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 167.172.119.42 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:167.172.119.42
Hostname:n/a
AS number:AS14061
AS name:DIGITALOCEAN-ASN
Country:- US
First seen:2021-07-02 19:15:50 UTC
Last online:2021-08-05 11:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-07-02 19:15:50167.172.119.42443
Dridex
Online
2021-08-05 11:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 167.172.119.42. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-07-02 13:51:511d56c9212f46064cc5da6f2032cfd38dWord file xlsbn/a
n/a
2021-07-02 13:51:31af0b209e6984467d3115ce6dc6b8ecabWord file xlsbn/a
n/a
2021-07-02 13:51:19aecb05d8652659bec372c0bffbf1a9afWord file xlsbn/a
n/a
2021-07-02 13:43:175ef9f9ecd54be4033788585a59aec61bWord file xlsbn/a
n/a
2021-07-02 13:42:16ad68cce66dd90c487c5667344583393dWord file xlsbVirustotal results 4.69%
n/a
2021-07-02 13:40:473c035c2361b9550711be19604af03fa7Word file xlsbn/a
n/a
2021-07-02 13:15:46c0cfbb6c549551dc7878da7701d4fb07Word file xlsbn/a
n/a
2021-07-02 13:15:3032c78c9fa7c6b4208cc820e73fbfea26Word file xlsbn/a
n/a
2021-07-02 13:15:21bccb681669c8a330021dd288f0184672Word file xlsbn/a
n/a
2021-07-02 13:15:21a4ab1536a4027c43932a5197e3eb3602Word file xlsbn/a
n/a