Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 194.5.249.197. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:194.5.249.197
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS64398
AS name:NXTHOST-64398 NXTHOST.COM - NXTSERVERS SRL
Country:- RO
First seen:2020-08-12 16:27:45 UTC
Last seen:2020-08-14 07:08:33 UTC
Last online:2020-08-15

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-08-19 06:42:511a54032fbb6e85a76c602bb64cbcfe7bn/a194.5.249.197447TrickBot
2020-08-18 17:28:446fb109e8c75a15d047561b254fcc3e4cVirustotal results 24 / 69 (34.78%) 194.5.249.197447TrickBot
2020-08-14 07:56:397266e2d9a8355b408dca172569d8897cn/a194.5.249.197447TrickBot
2020-08-13 17:34:47e1b1d4fee87992c7100dbfdcdf4c1153n/a194.5.249.197447Quakbot
2020-08-12 17:16:0091cf0c54049137ba62fc9b3e070b68e6n/a194.5.249.197447TrickBot
2020-08-12 16:50:036733fe7136d0a48a9fae256bc60e95f1n/a194.5.249.197447TrickBot

# of malware samples: 6