Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 185.99.2.197. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:185.99.2.197
Hostname:cmail10.aliina.club
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS200698
AS name:GLOBALHOST-BOSNIA-AS
Country:- BA
First seen:2020-03-01 18:16:36 UTC
Last seen:2020-03-02 15:50:06 UTC
Last online:2020-03-02

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-03 04:36:49417b5c36d612e18f39a252fc6e930a49n/a185.99.2.197447TrickBot
2020-03-02 20:19:58fdaab889b1237dd66d45efd7492c8b48Virustotal results 47 / 72 (65.28%) 185.99.2.197447TrickBot
2020-03-02 19:49:20f745bac58344117bb4b4e708ec9689c6n/a185.99.2.197447TrickBot
2020-03-02 19:26:48e115f08965992cc22221090225816159Virustotal results 46 / 73 (63.01%) 185.99.2.197447TrickBot
2020-03-02 19:17:15b1046bf257f39156e4136933dff3eab5n/a185.99.2.197447TrickBot
2020-03-02 18:06:01d68a81cac765d0fdc31794741778093fVirustotal results 43 / 71 (60.56%) 185.99.2.197447TrickBot
2020-03-02 13:25:52b1c9f27aa97897dc0df5e5e145f2eb2dn/a185.99.2.197447TrickBot
2020-03-01 20:00:439c8ef22c3a2221bfba4efab5c66d8615n/a185.99.2.197447TrickBot

# of malware samples: 8