Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 212.200.25.118 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:212.200.25.118
Hostname:n/a
AS number:AS8400
AS name:TELEKOM-AS
Country:- RS
First seen:2021-05-23 17:34:30 UTC
Last online:2021-06-20 23:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse complaint sent?Last online (UTC)
2021-05-23 17:34:30212.200.25.118443
TrickBot
Offline
No2021-06-20 23:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 212.200.25.118. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-07-04 20:33:05562255c763893489cbf2836620322d05Executable exeVirustotal results 65.71%
TrickBot
2021-06-29 18:05:55d5027ed0ea80dc469af07a5b36ba0651Executable exeVirustotal results 69.57%
TrickBot
2021-06-23 20:14:53aedbddee19ae41746c8d8d65c353dd3fExecutable exen/a
n/a
2021-06-23 14:00:469481541d29f543ba93232562641e044bExecutable exeVirustotal results 32.86%
n/a
2021-06-23 09:30:2156589fb30f01fe50174660b5ce2c85bdExecutable exen/a
n/a
2021-06-23 08:53:143c2ba1f1c4a14d708acc39a67824e65fExecutable exeVirustotal results 25.71%
n/a
2021-06-23 08:41:37f4f6d7d458859ba2ce49990173113db5Executable exeVirustotal results 24.64%
n/a
2021-06-23 06:38:46bfd7e7e21750b0850518f36ecb1e7d43Executable exen/a
TrickBot
2021-06-23 05:31:58f8f58d3edede27896aaed4fb8b2faf4aExecutable exen/a
n/a
2021-06-23 04:04:219e1afa5cc8d62236c0d8661eb89c0782Executable exen/a
n/a
2021-06-23 02:51:11d95d8ca04f916e440622cbd911f4fb75Executable exen/a
n/a
2021-06-23 02:24:525e62bce18caa51e29e32a4f08b3210bfExecutable exen/a
TrickBot
2021-06-23 02:10:443cc0a16123dd225fed4dbef1f88a5e71Executable exen/a
n/a
2021-06-23 00:54:21b6667d3f48e642d5a13e34e380c10d7cExecutable exen/a
TrickBot
2021-06-22 23:24:371bc60859c0e8ce3076030b60230e61abExecutable exen/a
TrickBot
2021-06-22 22:27:317d3139ede831357cba313f378fa40ffaExecutable exen/a
n/a
2021-06-22 20:02:1821e90df0cf527348bcddd1f315821e42Executable exen/a
TrickBot
2021-06-22 19:44:019a55527ac871cfc79ef742b6eff9952dExecutable exen/a
n/a
2021-06-22 18:42:1887c0ce24a19066b1865618c854a94bfeExecutable exen/a
n/a
2021-06-22 18:02:03d58eeaa97162711806b7d5264a09bc16Executable exen/a
TrickBot
2021-06-18 18:18:47af9f00bd331dbd53996a8c9e8eb23cf5DLL dllVirustotal results 13.43%
n/a
2021-06-17 10:11:131a5f3ca6597fcccd3295ead4d22ce70bExecutable exeVirustotal results 22.06%
TrickBot
2021-05-28 07:31:17582671a5b5f2170a49333296aa81b84bDLL dllVirustotal results 13.64%
n/a
2021-05-23 16:38:2538b35b6e808b34f36c4d73ca7e9c88f4Executable exen/a
TrickBot