Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 27.72.107.215 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:27.72.107.215
Hostname:dynamic-adsl.viettel.vn
AS number:AS7552
AS name:VIETEL-AS-AP Viettel Group
Country:- VN
First seen:2021-05-21 14:47:28 UTC
Last online:2021-06-16 19:xx:xx UTC
Malware:TrickBot

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-05-21 14:47:2827.72.107.215443
TrickBot
Online
2021-06-16 19:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 27.72.107.215. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-06-03 06:59:0608a918d23a7289f7442a3bddce07887eDLL dllVirustotal results 37.68%
n/a
2021-06-01 15:21:596aa7925f6d03c57b8b7ff2a05f6f06bbExecutable exeVirustotal results 33.33%
TrickBot
2021-05-31 17:16:26e34c7bb24a752644de21c1c1a921e74bExecutable exeVirustotal results 59.42%
n/a
2021-05-22 21:25:05c29c251477d29792a0f91fa15bbf1dbcExecutable exen/a
TrickBot
2021-05-22 11:12:56738e2a2307576f33dd43387b7a78d501Executable exeVirustotal results 60.00%
TrickBot
2021-05-21 10:41:18a31b8c08be37215432b2a63883438f53Executable exeVirustotal results 59.42%
TrickBot