Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 194.36.189.165. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:194.36.189.165
Hostname:slot1.metallictrading.ga
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS60117
AS name:HS
Country:- NL
First seen:2019-10-17 08:42:00 UTC
Last seen:2019-10-20 11:27:17 UTC
Last online:2019-10-21

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-10-20 11:38:4881fc282cd70b1035ef00aa863726d804n/a194.36.189.165447TrickBot
2019-10-20 07:03:094173256c134e4eedd668360ec904ed15Virustotal results 52/70 (74.29%) 194.36.189.165447TrickBot
2019-10-19 16:56:11b35ccd1cb2a68e6c003c307bfce69bd3Virustotal results 50/69 (72.46%) 194.36.189.165447TrickBot
2019-10-17 19:09:36a140c74dd4f97d670a3a6bbe03a9ee0dVirustotal results 53 / 70 (75.71%) 194.36.189.165447TrickBot
2019-10-17 08:50:318dee36c4e622d66a300ea5c167f54e2dVirustotal results 15 / 70 (21.43%) 194.36.189.165447Heodo

# of malware samples: 5