Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 185.65.202.58. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:185.65.202.58
Hostname:kointer.ru
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS29182
AS name:THEFIRST-AS
Country:- RU
First seen:2020-06-17 13:57:11 UTC
Last seen:2020-06-17 13:57:11 UTC
Last online:2020-06-17

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-07-09 06:17:51fdffbfa1380ab1a0ee2e26ff1be432b1Virustotal results 21 / 72 (29.17%) 185.65.202.58443BazaLoader
2020-07-09 06:17:51fdffbfa1380ab1a0ee2e26ff1be432b1Virustotal results 21 / 72 (29.17%) 185.65.202.58443BazaLoader
2020-06-17 14:27:24d31b900dd69775c897b4eb71b4c2c29aVirustotal results 8 / 74 (10.81%) 185.65.202.58443BazaLoader
2020-06-17 14:27:24d31b900dd69775c897b4eb71b4c2c29aVirustotal results 8 / 74 (10.81%) 185.65.202.58443BazaLoader
2020-06-17 14:27:24d31b900dd69775c897b4eb71b4c2c29aVirustotal results 8 / 74 (10.81%) 185.65.202.58443BazaLoader

# of malware samples: 5