Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 164.132.138.142. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:164.132.138.142
Hostname:ip142.ip-164-132-138.eu
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS16276
AS name:OVH
Country:- FR
First seen:2019-05-24 01:30:32 UTC
Last seen:2019-05-24 01:30:32 UTC
Last online:2019-06-03

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-06-06 04:30:5983355f29ce4d0cbbaa4fd0c31fe0113dVirustotal results 50/74 (67.57%) 164.132.138.142443TrickBot
2019-06-06 04:05:1821bd289bf969b243f5613164473af416Virustotal results 11/73 (15.07%) 164.132.138.142443TrickBot
2019-05-31 23:01:20c960ea435ec5da1e67fd4c8f998683bfVirustotal results 45/70 (64.29%) 164.132.138.142443TrickBot

# of malware samples: 3