Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 185.99.2.131. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:185.99.2.131
Hostname:averi.logisticsto.name
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS200698
AS name:GLOBALHOST-BOSNIA-AS
Country:- BA
First seen:2020-01-05 18:11:42 UTC
Last seen:2020-01-08 08:57:10 UTC
Last online:2020-01-08

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-01-09 08:31:2668d6181d69694854cc82993e920cb55an/a185.99.2.131447TrickBot
2020-01-08 13:02:16181122b8112dc0549b467922b76e6ca6Virustotal results 33 / 72 (45.83%) 185.99.2.131447TrickBot
2020-01-08 04:28:51dd9582c0a83d7274e397995a21902eb6Virustotal results 43 / 72 (59.72%) 185.99.2.131447TrickBot
2020-01-08 01:37:32159263d89c681b62c2df7ef01dcd9086Virustotal results 41 / 70 (58.57%) 185.99.2.131447TrickBot

# of malware samples: 4