Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 51.91.105.97 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:51.91.105.97
Hostname:mail.las.es
AS number:AS16276
AS name:OVH
Country:- FR
First seen:2021-08-15 21:41:20 UTC
Last online:2021-08-22 22:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-08-15 21:41:2051.91.105.978443
Dridex
Offline
No2021-08-22 22:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 51.91.105.97. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-08-18 07:10:44a1cc33a0d7dda0b0aa7a5593a58f6324Executable exeVirustotal results 62.32%
Dridex
2021-08-16 16:57:56a8acbd45d84f7faec91573808990f7e6Executable exeVirustotal results 67.65%
Dridex
2021-08-15 19:37:3454fee7894185f2754a6571bfbb82e128Executable exen/a
Dridex