Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 148.251.185.186. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:148.251.185.186
Hostname:148.251.185.186.n-07-01.de.gw.theideahosting.net
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS24940
AS name:HETZNER-AS
Country:- DE
First seen:2019-11-24 22:10:00 UTC
Last seen:2019-11-24 22:10:00 UTC
Last online:2019-11-26

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-11-28 00:06:51804cf602a3e5601d1bd0a81dbe37ff36Virustotal results 45/70 (64.29%) 148.251.185.186447TrickBot
2019-11-27 23:26:19cf8e150e2878d810d4fd005e4d793623Virustotal results 53/71 (74.65%) 148.251.185.186447TrickBot
2019-11-26 21:27:57a8287ad7fffa72e9e33c9a5764e9c678Virustotal results 45/70 (64.29%) 148.251.185.186447TrickBot
2019-11-25 10:27:153b00f0955bbaae372b952afeb08fa47eVirustotal results 57/70 (81.43%) 148.251.185.186447TrickBot

# of malware samples: 4