Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 185.99.2.106. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:185.99.2.106
Hostname:pickswhy.net
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS200698
AS name:GLOBALHOST-BOSNIA-AS
Country:- BA
First seen:2020-08-24 18:58:54 UTC
Last seen:2020-09-03 16:57:23 UTC
Last online:2020-09-05

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-09-03 18:17:501c0a31e7ade7e12222a2b3cad36261f4Virustotal results 45 / 69 (65.22%) 185.99.2.106447TrickBot
2020-09-02 00:57:279712a02290d8dbd3ea1c7be9fb1c4505Virustotal results 31 / 69 (44.93%) 185.99.2.106447TrickBot
2020-09-01 03:20:32fb3d87150b135b96a786d276ccab8aean/a185.99.2.106447TrickBot
2020-09-01 03:07:18deffa5826a1cae70956fa0a6688b6375n/a185.99.2.106447TrickBot
2020-09-01 03:02:52e9cfaf1b5ad745ba80ee5927ce1bead7n/a185.99.2.106447TrickBot
2020-09-01 02:46:08c49705b3a6c9a7050e6750c38c6a5f9bn/a185.99.2.106447TrickBot
2020-09-01 02:37:41b58ba3ae87c157b10b8fc01d48bb755bn/a185.99.2.106447TrickBot
2020-09-01 02:33:17a9ff197889b92687b2d43775c102875cn/a185.99.2.106447TrickBot
2020-09-01 02:29:35a4e67a4ecb625c8d158c3b2b776df220n/a185.99.2.106447TrickBot
2020-09-01 02:28:03a3047e426960c913a475802ed8c29d64n/a185.99.2.106447TrickBot
2020-09-01 02:26:34a094cd46a7a79ac9fa6e55c97af300f0n/a185.99.2.106447TrickBot
2020-09-01 02:07:497aa32c6e6ad1e23013c21073466a34e6n/a185.99.2.106447TrickBot
2020-09-01 01:53:4760c4a31508f1631347424eaa28dc5206n/a185.99.2.106447TrickBot
2020-09-01 01:52:314976f77f5112f70942b453f4d0db6492n/a185.99.2.106447TrickBot
2020-09-01 01:48:2456540260a287fdf41dc0ecc571021c55n/a185.99.2.106447TrickBot
2020-09-01 01:45:25288a06f7b824db88e0f6acd9028374a6n/a185.99.2.106447TrickBot
2020-09-01 01:45:25288a06f7b824db88e0f6acd9028374a6n/a185.99.2.106447TrickBot
2020-09-01 01:37:59187eb076a20430e98f8b88ecd8d7b758n/a185.99.2.106447TrickBot
2020-09-01 01:35:210816534c1f14fdfab76464419d687b72n/a185.99.2.106447TrickBot
2020-09-01 01:33:2800446fa2ed73d1625aa484b662ce641dn/a185.99.2.106447TrickBot
2020-09-01 01:32:0225647ceafcdd53852dcae755cc05db0dn/a185.99.2.106447TrickBot
2020-09-01 01:31:273219408c946c92ec01f63c6c671d4dd3n/a185.99.2.106447TrickBot
2020-09-01 01:24:21139d9fbdbdbb9a0233859a20d8c284f4n/a185.99.2.106447TrickBot
2020-09-01 01:20:120d7224275791ead317356adee380fd8fn/a185.99.2.106447TrickBot
2020-09-01 01:07:400fa2114ba623be295e1ce440d338e7f2n/a185.99.2.106447TrickBot
2020-08-31 20:55:51e892e2dca44a85d0678416cf2a8114a6n/a185.99.2.106447TrickBot
2020-08-31 20:55:51e892e2dca44a85d0678416cf2a8114a6n/a185.99.2.106447TrickBot
2020-08-31 20:44:03ae23c5abe6b54f4df8429d177022cf09n/a185.99.2.106447TrickBot
2020-08-31 20:44:03ae23c5abe6b54f4df8429d177022cf09n/a185.99.2.106447TrickBot
2020-08-31 20:04:12105946f29b7ee9f5d53f4080d5d13124n/a185.99.2.106447TrickBot
2020-08-29 19:04:112c30c1852c9857aa27414a9625f04908Virustotal results 41 / 68 (60.29%) 185.99.2.106447TrickBot
2020-08-29 18:39:26132bf0d01e9275f57b65a0af0f6c9f03n/a185.99.2.106447TrickBot
2020-08-29 18:39:26132bf0d01e9275f57b65a0af0f6c9f03n/a185.99.2.106447TrickBot
2020-08-25 16:23:42b788e3fae277d3cbdebe80dda3071119n/a185.99.2.106447TrickBot
2020-08-25 15:07:36778e4ea72e690117e3cfe3b6312f4d37n/a185.99.2.106447
2020-08-25 15:07:36778e4ea72e690117e3cfe3b6312f4d37n/a185.99.2.106447
2020-08-25 14:11:09d316360a89fb6c6d008986b5919f9d7dn/a185.99.2.106447TrickBot
2020-08-25 04:56:237a1813041a2ba44badf666306a417265n/a185.99.2.106447TrickBot

# of malware samples: 38