Browse Botnet C&Cs

You are currently viewing the database entry for the D botnet command&control server (C&C) 209.40.206.231. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:209.40.206.231
Hostname:231.206.40.209.in-addr.arpa
Status:Offline
Spamhaus SBL:SBL259152
Malware:
AS number:AS29873
AS name:BIZLAND-SD - The Endurance International Group, Inc., US
Country:- US
First seen:2015-06-10 16:24:48 UTC
Last seen:2015-06-16 18:11:34 UTC

Malware Samples


The table below documents all malware samples associated with this D botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2015-06-16 18:11:34b909d6244b505bcbf3577351a34ec060Virustotal results 22/57 (38.60%) 209.40.206.2318443Dridex
2015-06-12 16:44:049287cbad94aadcb943d498b71c94369aVirustotal results 6/57 (10.53%) 209.40.206.2318443Dridex
2015-06-10 16:24:484d3f18eecfc4e31c50add56d929364adVirustotal results 11/57 (19.30%) 209.40.206.2318443Dridex

# of malware samples: 3