Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 177.52.173.20 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:177.52.173.20
Hostname:darwin.jcr.net.br
AS number:AS263319
AS name:JCR COMERCIO E SERVICOS DE TELECOMUNICACOES LTDA
Country:- BR
First seen:2021-07-31 11:43:22 UTC
Last online:2021-09-27 20:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-07-31 11:43:22177.52.173.209043
Dridex
Offline
No2021-09-27 20:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 177.52.173.20. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-09-19 17:47:0160d11ee61db2e22c929614695b3d9739Executable exeVirustotal results 65.71%
Dridex
2021-09-19 17:25:5385386de717d8c8357d2220a0ac97f049Executable exeVirustotal results 61.43%
Dridex
2021-09-15 16:43:2929171ce4fa0c519eeda4e9c51ecf9791Executable exeVirustotal results 71.01%
Dridex
2021-09-04 07:33:0324de8065ecd3ecedf232006175a21a03Executable exeVirustotal results 75.00%
Dridex
2021-09-04 05:00:239adc22ad30eabbccbba54a616ccfffe9Executable exeVirustotal results 79.71%
Dridex
2021-09-03 23:21:19a894f3bd12e8c986f4d5d2cf2dcca4fbExecutable exeVirustotal results 79.71%
Dridex
2021-08-28 01:11:21a082e267f558f844d33a2abea53cc794Executable exeVirustotal results 73.53%
Dridex
2021-08-22 19:24:262ffa097269a8b64696512c800568df18Executable exen/a
Dridex
2021-08-16 21:36:46a61bc74e464284e74dc017a183d08674Executable exen/a
Dridex
2021-08-13 16:22:27e06126091b42bcbbd3e6d3123f4790d5Executable exen/a
Dridex
2021-08-12 08:30:34b32bea4fa828d525f9ddfe656e9dad1fExecutable exeVirustotal results 72.46%
Dridex
2021-08-09 18:15:17901d75c1549cbc88c5f9a757ebf04315Executable exeVirustotal results 66.18%
Dridex
2021-08-09 18:12:47480720c936288dcfd02944babc9c95cdExecutable exeVirustotal results 66.67%
Dridex
2021-08-06 08:58:42cd5e9c4542a4ba2f1ae2454f41d90f7eExecutable exeVirustotal results 72.46%
Dridex
2021-08-06 08:39:5123c34f8cee5ff488446522a04db2d3b4Executable exeVirustotal results 74.29%
Dridex
2021-08-06 08:27:48f6dd13a712096e695e5422bcc4c34a23Executable exeVirustotal results 66.67%
Dridex
2021-08-04 21:44:2877ac5bbe188d9230f8989f791b50c811Executable exeVirustotal results 44.29%
Dridex
2021-08-04 21:35:11ce7142adf3cbac3b7e7796399de482b9Executable exeVirustotal results 33.82%
Dridex
2021-08-04 21:20:56fdc3feb012dcafbae20ce304aee37b8eExecutable exeVirustotal results 33.82%
Dridex
2021-08-04 21:20:38708703cb29ad5b58a349f3122336171fExecutable exeVirustotal results 30.88%
Dridex
2021-08-04 21:04:56819ea25c20a32b49a4809fe5685edbc8Executable exeVirustotal results 34.78%
Dridex
2021-08-03 03:13:11a9bfb519af2ed5b497c5a7a1226b6947Executable exeVirustotal results 31.25%
Dridex
2021-08-02 19:44:23587da3491827dbafdcb4e6b26edea35aExecutable exeVirustotal results 61.43%
Dridex
2021-07-31 14:10:09a4a32336304437449564b204c831994eExecutable exeVirustotal results 51.43%
Dridex
2021-07-31 11:19:01a3413396c1f7a8ff76b28988c5111abcExecutable exeVirustotal results 50.00%
Dridex