Malware Botnet C&C

You are currently viewing the database entry for the malware botnet command&control server (C&C) hosted at 64.251.25.156 . You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


IP address:64.251.25.156
Hostname:gal-quantity.upstartpen.com
AS number:AS15083
AS name:INFOLINK-MIA-
Country:- US
First seen:2021-11-24 14:23:43 UTC
Last online:2021-12-09 13:xx:xx UTC

Botnet C&Cs

The table below shows all botnet C&Cs know to Feodo Tracker that are hosted on this host.

First seen (UTC)IP addressPortMalwareStatusAbuse compltain sent?Last online (UTC)
2021-11-24 14:23:4364.251.25.1566602
Dridex
Online
Yes (2021-11-25 15:44:14 UTC)2021-12-09 13:xx:xx

Referencing Malware Samples

The following table shows the most recent malware samples associated with malware botnet C&Cs hosted on 64.251.25.156. Please consider that the output is limited to the 500 most recent malware samples.

Time stamp (UTC)MD5 hashFile TypeVirustotalMalware
2021-11-25 05:43:157fb5a4f21088c0e6644aee22eb9c5ac5DLL dllVirustotal results 27.27%
Dridex
2021-11-24 19:01:00810c5b4097bc09b13f50322f814a76a1DLL dllVirustotal results 27.27%
Dridex
2021-11-24 18:52:06a6fa2e86006a76b8f28ec150a0ad761cDLL dllVirustotal results 27.69%
Dridex
2021-11-24 18:51:505edc20b587b422b5fb0e6ece55948813DLL dllVirustotal results 24.19%
Dridex
2021-11-24 16:49:002c9a177b6a0e43042a46454f467d3aedDLL dllVirustotal results 28.79%
Dridex
2021-11-24 16:48:5718363d169ce47cbbbc620ac11362f078DLL dllVirustotal results 41.54%
n/a
2021-11-24 16:48:4476c9558a0cd42098b2c6e72f2264c1b0DLL dllVirustotal results 31.82%
Dridex
2021-11-24 16:48:412b8681f61b27637fad4a869f6919ae8cDLL dllVirustotal results 43.08%
Dridex
2021-11-24 16:48:34edade5d8daa62a2ad259855fb0d66e61DLL dllVirustotal results 40.91%
Dridex
2021-11-24 16:47:1285f81634f3be93b8e2d359f6e8b0fb86DLL dlln/a
Dridex
2021-11-24 16:47:100e74eabfa1fb0f7c526ab0ea42c8738cDLL dlln/a
Dridex
2021-11-24 16:19:085c3d6e0b50e770f9179c9e42f8425147DLL dllVirustotal results 27.27%
Dridex
2021-11-24 14:39:29bf53b67e9ce48c1e2c1d4af02428f132DLL dllVirustotal results 28.79%
n/a
2021-11-24 14:39:210c25cd45058aaad04f63a57307b8fcbbDLL dllVirustotal results 30.30%
Dridex
2021-11-24 14:15:02856ce8cc4ec2233c476e30c12bb4bc60DLL dllVirustotal results 29.23%
n/a