Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 194.67.217.125. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:194.67.217.125
Hostname:gusi.hj
Status:Offline
Spamhaus SBL:SBL454845
Malware:TrickBot
AS number:AS48666
AS name:AS-MAROSNET Moscow, Russia
Country:- RU
First seen:2019-07-22 10:48:51 UTC
Last seen:2019-07-22 14:19:51 UTC
Last online:2019-07-22

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-22 16:10:4585e7c2ca8c57d9102b3e72e01738a6c1Virustotal results 54/71 (76.06%) 194.67.217.125447TrickBot
2019-07-22 15:47:0956a61be478dc92c8875316f91271c51dVirustotal results 42/71 (59.15%) 194.67.217.125447TrickBot
2019-07-22 15:27:038d6799f630e179bc73a1ba370fc34008Virustotal results 53/70 (75.71%) 194.67.217.125447TrickBot
2019-07-22 15:03:27b9c85ac6a14592a80c9e8778bd1cd978Virustotal results 39/70 (55.71%) 194.67.217.125447TrickBot
2019-07-22 14:32:11b10d189be8ab7af36f114c86a35d1dd4Virustotal results 42/71 (59.15%) 194.67.217.125447TrickBot
2019-07-22 14:18:41a356de59ee87a3adcff1fba02c24ffb6Virustotal results 33/71 (46.48%) 194.67.217.125447TrickBot
2019-07-22 13:46:544a2fa68c998f892c0330886803fd0e0cVirustotal results 41/70 (58.57%) 194.67.217.125447TrickBot
2019-07-22 13:09:20a3b45a2ac491cfbbf55e4240431c7acaVirustotal results 30/67 (44.78%) 194.67.217.125447TrickBot
2019-07-22 12:10:36f832c3556aa59f4691c5c0304b453642Virustotal results 54/72 (75.00%) 194.67.217.125447TrickBot
2019-07-22 10:59:247a19a7c8d6f383946ef2bdc699dd8d1aVirustotal results 42/71 (59.15%) 194.67.217.125447TrickBot

# of malware samples: 10