Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 204.107.218.39 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:204.107.218.39
Hostname:cloud9.itech-mke.com
AS number:AS26449
AS name:GENEVAONLINE
Country:- US
First seen:2021-09-07 01:08:26 UTC
Last online:2021-10-24 05:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-09-07 01:08:26204.107.218.399043
Dridex
Offline
No2021-10-24 05:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 204.107.218.39. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-10-10 22:45:05537d0f431699eeedb294e853c60fa2afExecutable exeVirustotal results 72.46%
Dridex
2021-10-10 17:11:000394d8ed3df5cb30b6edec55bbd137eaExecutable exeVirustotal results 62.69%
Dridex
2021-10-10 17:06:24641558c771cf5928f8938befa71bc9c4Executable exeVirustotal results 67.80%
Dridex
2021-10-10 16:57:5426257b51f6921af28007811aa512cd35Executable exeVirustotal results 69.12%
Dridex
2021-10-10 16:47:17fb4ebc82b9f9577f5b1b83fb059ffabbExecutable exeVirustotal results 68.66%
Dridex
2021-10-09 12:46:52e7037567bb8988146aca08149dbad0deExecutable exeVirustotal results 49.25%
Dridex
2021-10-09 12:45:5381e47e239725d097fd8133240feee99cExecutable exeVirustotal results 72.06%
Dridex
2021-10-09 12:44:219296f33aaff5e0ab92a08991bd30e3e1Executable exeVirustotal results 70.59%
Dridex
2021-10-09 12:44:09d12ae7709dec911a41acfa00a1b4039bExecutable exeVirustotal results 66.67%
Dridex
2021-10-03 17:47:58a55c9399cff653a2d2fefdbc3edefb9aExecutable exeVirustotal results 67.16%
Dridex
2021-10-01 16:31:523b711731ab9563d9400c2be994072836Executable exeVirustotal results 63.77%
Dridex
2021-09-21 02:33:48a4ef2583b61c3e6460dc95bd82a8fa93Executable exeVirustotal results 67.65%
Dridex
2021-09-20 19:18:23218167faa3e42afcec766e0e8b10478fExecutable exen/a
Dridex
2021-09-08 23:42:13a2851b6e8daa630157c8fff41515096eExecutable exeVirustotal results 60.29%
Dridex
2021-09-08 22:07:52a7bfd655fd6d4135378e6c8ea5ae0a13Executable exeVirustotal results 57.97%
Dridex
2021-09-08 21:31:59aa308bf0a2c0da3661b83032cf529b21Executable exeVirustotal results 57.35%
Dridex
2021-09-08 20:56:36ee1fdd5881d5b50275db5e8951b2c2eeExecutable exeVirustotal results 58.82%
Dridex
2021-09-08 04:16:36a64a2878a81a03e89f8ff7202afbe1bbExecutable exeVirustotal results 55.07%
Dridex
2021-09-08 00:34:32a5643365be32441dfb4c58b4e8260e37Executable exeVirustotal results 56.52%
Dridex
2021-09-07 05:49:47a28e5d0d0b4a487424869b3bd34c45a3Executable exeVirustotal results 73.91%
Dridex
2021-09-07 01:49:01a1580be5bee7e8ed21151fdb31ab47b7Executable exeVirustotal results 65.22%
Dridex
2021-09-07 01:26:12a31431fe51dc36524ed2bf752cf624f2Executable exeVirustotal results 69.23%
Dridex
2021-09-06 22:49:21d948f00e9fe3c648eda9aeb20a93c2c0Executable exeVirustotal results 50.75%
Dridex
2021-09-06 21:57:30c341a94db1bd136eaa68fdda03dcdf6aExecutable exen/a
Dridex
2021-09-06 21:43:239e0570ce86fd1bd36b78e317006c456cExecutable exen/a
Dridex