Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 178.156.202.157. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:178.156.202.157
Hostname:slot0.mathewsons.ga
Status:- Online
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS48874
AS name:HOSTMAZE HOSTMAZE
Country:- RO
First seen:2020-03-16 20:04:08 UTC
Last seen:2020-03-28 17:11:51 UTC
Last online:2020-03-29

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-28 22:48:35337b4fb202e224b41192f4db5e6ad4a5Virustotal results 53 / 73 (72.60%) 178.156.202.157447TrickBot
2020-03-28 21:28:415085da4cebd01d7360bf0b6a4df0d6aaVirustotal results 38 / 73 (52.05%) 178.156.202.157447TrickBot
2020-03-28 04:43:05c14bbb3c4872d78bac60c7a3b84a34acVirustotal results 55 / 73 (75.34%) 178.156.202.157447TrickBot
2020-03-28 04:43:05c14bbb3c4872d78bac60c7a3b84a34acVirustotal results 55 / 73 (75.34%) 178.156.202.157447TrickBot
2020-03-16 23:30:1348ca7c8102b5580ea102e21158547bacVirustotal results 31 / 73 (42.47%) 178.156.202.157447TrickBot
2020-03-16 20:21:18717385571dee48056ee970d1813ebb06Virustotal results 54 / 74 (72.97%) 178.156.202.157447TrickBot
2020-03-16 20:20:48ddacaaacdde1fdc4d8eb2383ed58fccfVirustotal results 37 / 73 (50.68%) 178.156.202.157447TrickBot

# of malware samples: 7