Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 185.43.6.87. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:185.43.6.87
Hostname:gayq.zg
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS29182
AS name:THEFIRST-AS
Country:- RU
First seen:2019-07-09 01:28:16 UTC
Last seen:2019-07-09 01:28:16 UTC
Last online:2019-07-10

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-10 01:01:18cf7fb440319d482107ddf12f3154f45bVirustotal results 51/70 (72.86%) 185.43.6.87443
2019-07-10 00:48:313074bb86a0558f4f35c93eb86443b54dVirustotal results 29/70 (41.43%) 185.43.6.87443TrickBot
2019-07-10 00:48:313074bb86a0558f4f35c93eb86443b54dVirustotal results 29/70 (41.43%) 185.43.6.87443TrickBot
2019-07-10 00:48:313074bb86a0558f4f35c93eb86443b54dVirustotal results 29/70 (41.43%) 185.43.6.87443TrickBot
2019-07-10 00:48:313074bb86a0558f4f35c93eb86443b54dVirustotal results 29/70 (41.43%) 185.43.6.87443TrickBot
2019-07-10 00:48:313074bb86a0558f4f35c93eb86443b54dVirustotal results 29/70 (41.43%) 185.43.6.87443TrickBot
2019-07-10 00:48:313074bb86a0558f4f35c93eb86443b54dVirustotal results 29/70 (41.43%) 185.43.6.87443TrickBot
2019-07-10 00:48:313074bb86a0558f4f35c93eb86443b54dVirustotal results 29/70 (41.43%) 185.43.6.87443TrickBot

# of malware samples: 8