Malware Signature

The following table shows a list of malware samples and the corresponding botnet C&C (ip:port) associated with Worm.Dorkbot

Database Entry


Malware:Worm.Dorkbot
First seen:2014-07-07 20:56:09 UTC
Last seen:2016-02-05 08:14:18 UTC

Malware Samples


The table below documents all malware samples associated with this malware family.

Timestamp (UTC)Malware Sample (MD5 hash)VTSignatureBotnet C&C (IP:port)
2016-02-05 08:14:18a8143802ce9216f51bbc3f7a5dc5bca6Virustotal results 47/54 (87.04%) Worm.Dorkbot82.165.129.253:1863
2016-02-05 08:14:18a8143802ce9216f51bbc3f7a5dc5bca6Virustotal results 47/54 (87.04%) Worm.Dorkbot82.165.129.253:1863
2014-07-07 20:56:0916c6ca91512b67a63411ef700df120c7Virustotal results 28/54 (51.85%) Worm.Dorkbot82.165.129.253:1863
2014-07-07 20:56:0916c6ca91512b67a63411ef700df120c7Virustotal results 28/54 (51.85%) Worm.Dorkbot82.165.129.253:1863