Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 51.79.50.122 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:51.79.50.122
Hostname:adriana.mentyx.com
AS number:AS16276
AS name:OVH
Country:- CA
First seen:2021-08-23 15:01:33 UTC
Last online:2021-09-02 16:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-08-23 15:01:3351.79.50.122443
Dridex
Offline
No2021-09-02 16:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 51.79.50.122. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-08-25 05:23:5385b3804f8d20900dcbc7fcfaed191898Word file xlsxVirustotal results 15.00%
Dridex
2021-08-24 11:03:52d2c657b1d893eca12b46e79b0ae908cbWord file xlsxVirustotal results 13.33%
Dridex
2021-08-23 18:09:0327635b8e585b6ac169cc402632592a5eDLL dllVirustotal results 27.94%
Dridex
2021-08-23 18:08:30eec7956961ccf9bb2f3d2c030ab9a0a1DLL dlln/a
Dridex
2021-08-23 15:51:1187d5d2e9bb63d1a530db36b5eac314a9DLL dllVirustotal results 32.84%
Dridex
2021-08-23 15:24:05871071a9adfa42c59820c30882fd5240DLL dllVirustotal results 27.27%
Dridex
2021-08-23 15:21:24fcc4e3f10d677af49364574c390ce41bWord file xlsxVirustotal results 11.67%
Dridex
2021-08-23 15:12:5449d1978dc16a3c33f6574f4f5601faebDLL dllVirustotal results 21.21%
Dridex
2021-08-23 14:39:25794af9acbf0cc5a7e5051425e539d5b0DLL dllVirustotal results 25.76%
Dridex
2021-08-23 14:38:4411f8f9028c6f5be72efde75cd177515eWord file xlsxn/a
Dridex