Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 148.251.185.189. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:148.251.185.189
Hostname:148.251.185.189.n-07-01.de.gw.theideahosting.net
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS24940
AS name:HETZNER-AS
Country:- DE
First seen:2019-09-18 16:17:08 UTC
Last seen:2019-09-18 16:17:08 UTC
Last online:2019-09-18

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-09-20 01:16:0174ddc4d596eea797435bcdc16ddeb80fVirustotal results 10 / 70 (14.29%) 148.251.185.189443TrickBot
2019-09-20 01:02:02a8b84f382e19151cffe20b6c4c8afc6dVirustotal results 6 / 69 (8.70%) 148.251.185.189443Heodo
2019-09-19 12:53:368049241427c6591a9e02be6903220d0cVirustotal results 49/71 (69.01%) 148.251.185.189443TrickBot
2019-09-19 07:25:1091de177418c9fc4d83ecab4b9719a4acVirustotal results 47/69 (68.12%) 148.251.185.189443TrickBot
2019-09-18 22:08:56ed3ead0e72c0e9782ed4ee30a74552ecn/a148.251.185.189443TrickBot
2019-09-18 20:16:46a511d3220ba6b2e33fb791797b9e06b1Virustotal results 47/67 (70.15%) 148.251.185.189443TrickBot
2019-09-18 16:25:37e6e723084a908eb3cb1e3cbdff82c30aVirustotal results 48/71 (67.61%) 148.251.185.189443TrickBot
2019-09-18 16:25:37e6e723084a908eb3cb1e3cbdff82c30aVirustotal results 48/71 (67.61%) 148.251.185.189443TrickBot
2019-09-18 16:25:37e6e723084a908eb3cb1e3cbdff82c30aVirustotal results 48/71 (67.61%) 148.251.185.189443TrickBot

# of malware samples: 9