Browse Botnet C&Cs

You are currently viewing the database entry for the TC botnet command&control server (C&C) 181.113.28.162. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:181.113.28.162
Hostname:162.28.113.181.static.anycast.cnt-grms.ec
Status:- Online
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS28006
AS name:CORPORACION NACIONAL DE TELECOMUNICACIONES - CNT EP
Country:- EC
First seen:2019-11-07 06:10:10 UTC
Last seen:2019-11-16 22:37:14 UTC
Last online:2019-11-17

Malware Samples


The table below documents all malware samples associated with this TC botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-11-16 22:47:261019ebd1cd7aecd36efb980c0e06d20en/a181.113.28.162449TrickBot
2019-11-16 08:09:30b99723b250c4ba4662b999b6fa3796fan/a181.113.28.162449TrickBot
2019-11-13 05:46:35396bce37d4b5a59da5b8f252ed3aaa36Virustotal results 14 / 72 (19.44%) 181.113.28.162449TrickBot
2019-11-12 07:43:415e5acc339265665025dd92eba6a63c50Virustotal results 32 / 71 (45.07%) 181.113.28.162449TrickBot
2019-11-12 07:21:151cc959cfa90c35497cca949ba538b5abn/a181.113.28.162449TrickBot
2019-11-07 06:53:40a3b307066c7ce762573b75396c718467Virustotal results 11 / 69 (15.94%) 181.113.28.162449TrickBot
2019-11-07 06:53:40a3b307066c7ce762573b75396c718467Virustotal results 11 / 69 (15.94%) 181.113.28.162449TrickBot

# of malware samples: 7