Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 81.0.236.71 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:81.0.236.71
Hostname:www7.ikagroup.cz
AS number:AS15685
AS name:CASABLANCA-AS Internet & Collocation Provider
Country:- CZ
First seen:2021-06-23 20:10:38 UTC
Last online:2021-07-01 21:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-06-23 20:10:3881.0.236.7113786
Dridex
Offline
2021-07-01 21:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 81.0.236.71. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-08-02 19:21:304636537aa1eb5da5395140196a2ca9adExecutable exeVirustotal results 59.42%
Dridex
2021-07-13 17:51:3601d729d5ca8273c92aa223e1fbc2d5e5Executable exeVirustotal results 54.69%
Dridex
2021-07-12 11:32:44b4c14b0d904c9a3e700dc7e7e32d6382Executable exen/a
Dridex
2021-07-12 11:30:13bd4f160adf491c54585bd044536b128eExecutable exeVirustotal results 60.00%
Dridex
2021-07-09 20:53:09a2d3da5d8e608ec6f1b8d5282c9d6ffcExecutable exen/a
Dridex
2021-06-27 19:17:06c3678064fa55cb88d59683b39516c4c6Executable exeVirustotal results 57.14%
Dridex
2021-06-25 17:07:12dba600364ca32a3149d917b419626ba0Executable exeVirustotal results 55.71%
Dridex
2021-06-24 18:55:0414697bc20571313f407df29ac2e3a277Executable exeVirustotal results 47.14%
Dridex
2021-06-23 19:26:583796236911ffe07b57732455baff51ecExecutable exen/a
Dridex