Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 149.202.225.162. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:149.202.225.162
Hostname:ip162.ip-149-202-225.eu
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS16276
AS name:OVH
Country:- FR
First seen:2019-06-06 21:18:53 UTC
Last seen:2019-06-06 21:18:53 UTC
Last online:2019-06-10

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-06-11 02:55:36f2942ad8470d9be3dc0aa8d176c454aaVirustotal results 28/71 (39.44%) 149.202.225.162443TrickBot
2019-06-08 10:25:041b8703e3d3af832e5cebb7104300c17eVirustotal results 58/71 (81.69%) 149.202.225.162443Downloader.Upatre
2019-06-08 09:54:0038669acb1d624114a037e9165d255738Virustotal results 47/71 (66.20%) 149.202.225.162443TrickBot
2019-06-08 09:54:0038669acb1d624114a037e9165d255738Virustotal results 47/71 (66.20%) 149.202.225.162443TrickBot
2019-06-08 09:54:0038669acb1d624114a037e9165d255738Virustotal results 47/71 (66.20%) 149.202.225.162443TrickBot

# of malware samples: 5