Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 209.59.199.129 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:209.59.199.129
Hostname:magidson21.verio.com
AS number:AS29873
AS name:BIZLAND-SD
Country:- US
First seen:2021-01-17 07:50:03 UTC
Last online:2021-10-01 17:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-01-17 07:50:03209.59.199.1294443
Dridex
Offline
No2021-10-01 17:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 209.59.199.129. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2020-11-11 11:04:54ff65be4cf611293ec463d7902335d2e5DLL dlln/a
Dridex
2020-11-10 06:14:22831c361b1f54a876c98fb6bf3cd5d688DLL dllVirustotal results 22.86%
Dridex
2020-11-09 19:35:22d80bd52838a72d155143fef947b86917Word file xlsVirustotal results 28.12%
Dridex
2020-11-09 19:24:442e94ba2da1286e2b93005d46ee5fb6d7DLL dllVirustotal results 16.90%
Dridex
2020-11-09 14:26:46d383eee1272cf0780e331c4e9eccde04Word file xlsmVirustotal results 21.21%
Dridex
2020-11-09 12:40:559a821fc91c5053a2b52dbb0c16f89dc0DLL dllVirustotal results 14.08%
Dridex
2020-11-09 12:35:3278f485572bfb86b5533385ca958251caWord file xlsmVirustotal results 22.39%
Dridex