Browse Botnet C&Cs

You are currently viewing the database entry for the TC botnet command&control server (C&C) 185.17.123.90. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:185.17.123.90
Hostname:rheingoldgalaxy.example.com
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS28753
AS name:LEASEWEB-DE-FRA-10
Country:- DE
First seen:2020-03-28 08:52:06 UTC
Last seen:never

Malware Samples


The table below documents all malware samples associated with this TC botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-04-17 13:08:494dc0dbb74ce296039274dc1f62d4aecdVirustotal results 30 / 71 (42.25%) 185.17.123.90443TrickBot
2020-04-02 20:04:55b570a1a5cde72ccc99d1cab72ec3b340Virustotal results 33 / 72 (45.83%) 185.17.123.90443TrickBot
2020-03-29 06:07:45c81e836e3ab5772daba05e72c766d5ffVirustotal results 9 / 73 (12.33%) 185.17.123.90443TrickBot

# of malware samples: 3