Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 172.82.152.115. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:172.82.152.115
Hostname:i.am.the.legendary.decrypted.of.darkunix.org
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS46261
AS name:QUICKPACKET - QuickPacket, LLC
Country:- US
First seen:2019-12-02 02:58:36 UTC
Last seen:2019-12-03 10:37:46 UTC
Last online:2019-12-04

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-12-03 10:48:076a8a7b7d6292d3a4669202b285e86b96Virustotal results 48/72 (66.67%) 172.82.152.115447TrickBot
2019-12-02 14:19:51abd579740b84b4e03b79ef1141ba1500Virustotal results 47/69 (68.12%) 172.82.152.115447TrickBot
2019-12-02 08:36:2272d9633928c257f5537d14087ad41b35Virustotal results 55/69 (79.71%) 172.82.152.115447TrickBot
2019-12-02 07:18:35667b19738a56caaed67f91a0bc75e5a6Virustotal results 53/70 (75.71%) 172.82.152.115447TrickBot
2019-12-02 03:16:32f0a6289c7214ab99c1aacf3577b3a254Virustotal results 54/70 (77.14%) 172.82.152.115447TrickBot

# of malware samples: 5