Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 185.65.202.248. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:185.65.202.248
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS29182
AS name:THEFIRST-AS
Country:- RU
First seen:2020-03-01 18:09:42 UTC
Last seen:2020-03-03 13:19:44 UTC
Last online:2020-03-03

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-03 13:33:41afba255d6d53f18fd87b9230efe9678an/a185.65.202.248447TrickBot
2020-03-03 06:11:39f0454d56eecba98059b4627dde614a80n/a185.65.202.248447TrickBot
2020-03-02 19:49:20f745bac58344117bb4b4e708ec9689c6n/a185.65.202.248447TrickBot
2020-03-02 18:44:092ddf647dec69d55aab249f5b9b8584dbVirustotal results 33 / 72 (45.83%) 185.65.202.248447TrickBot
2020-03-02 16:43:42000798b016c9d104850e5c86c751d2b0Virustotal results 51 / 73 (69.86%) 185.65.202.248447TrickBot
2020-03-01 21:59:447be6637540125f858fe47b9b0b3d8ad7n/a185.65.202.248447TrickBot

# of malware samples: 6