Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 45.56.121.87 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:45.56.121.87
Hostname:li939-87.members.linode.com
AS number:AS63949
AS name:LINODE-AP Linode, LLC
Country:- US
First seen:2021-10-18 16:21:22 UTC
Last online:2022-01-01 11:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-10-18 16:21:2245.56.121.878116
Dridex
Offline
Yes (2021-11-25 15:36:52 UTC)2022-01-01 11:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 45.56.121.87. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-10-19 14:28:50842551bf48e3af6bad879ab9602a439aDLL dllVirustotal results 18.75%
Dridex
2021-10-18 18:06:14f155110bf587807b6d48d7bb5e5fe9dfDLL dllVirustotal results 22.39%
n/a
2021-10-18 18:00:0112e2b3b7496802dc7e43d1f33c7d49f7DLL dllVirustotal results 22.73%
n/a
2021-10-18 17:54:1194395a29f0cf16cc80c2a1a4aee0d8d4DLL dllVirustotal results 18.18%
n/a
2021-10-18 17:54:056b3416e2c517621b5d670800a30d484fDLL dllVirustotal results 19.70%
n/a
2021-10-18 16:02:038d8b7ea34b7c1e93d924b3da0ad88a3dDLL dllVirustotal results 21.88%
Dridex
2021-10-18 16:01:5821187c4bfcd9fd36f9543feb063427c4DLL dllVirustotal results 24.24%
Dridex
2021-10-18 16:01:53ec40302c6da1f3379ad2db586768b348DLL dllVirustotal results 24.24%
Dridex