Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 116.203.25.236 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:116.203.25.236
Hostname:static.236.25.203.116.clients.your-server.de
AS number:AS24940
AS name:HETZNER-AS
Country:- DE
First seen:2021-08-01 00:47:34 UTC
Last online:2021-08-22 20:xx:xx UTC
Malware:Dridex

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusLast online (UTC)
2021-08-01 00:47:34116.203.25.2368443
Dridex
Offline
2021-08-22 20:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 116.203.25.236. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-08-19 22:38:2737851ff8d9760022b767b171a69be232Executable exeVirustotal results 71.43%
Dridex
2021-08-14 19:09:13f4b0f413250bb2f367d200b17f23e5ccExecutable exeVirustotal results 69.23%
Dridex
2021-08-13 16:45:53ac4551fe968a7926697b5e6eabcf06b0Executable exeVirustotal results 71.21%
Dridex
2021-08-12 08:21:58048ff436d13f8fa09c612a2a45f311f6Executable exen/a
Dridex
2021-07-31 19:18:23870d4a5e6be7fd07f7f651544d2d8bc1Executable exeVirustotal results 57.97%
Dridex
2021-07-31 19:03:09a66dbdea71c220e57325e20d01516820Executable exeVirustotal results 47.14%
Dridex