Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 185.172.129.176. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:185.172.129.176
Hostname:denjh.as
Status:Offline
Spamhaus SBL:SBL471048
Malware:TrickBot
AS number:AS204154
AS name:FIRST-SERVER-US-AS
Country:- US
First seen:2019-12-27 14:29:20 UTC
Last seen:2019-12-27 17:49:56 UTC
Last online:2019-12-27

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-12-27 22:52:518549d722aa8c447145001d9f0999926fVirustotal results 25 / 73 (34.25%) 185.172.129.176447TrickBot
2019-12-27 18:58:35b7ee2115dc67d390013ec0b9b98874can/a185.172.129.176447TrickBot
2019-12-27 17:12:16a1fadaa0d090b364305b2404f821183dVirustotal results 28 / 71 (39.44%) 185.172.129.176447TrickBot
2019-12-27 14:47:5885dab4d33d75402034fd0acce7a710een/a185.172.129.176447TrickBot

# of malware samples: 4