Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 194.87.102.92. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:194.87.102.92
Hostname:unspecified.mtw.ru
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS48347
AS name:MTW-AS
Country:- RU
First seen:2019-05-24 05:52:36 UTC
Last seen:2019-05-29 10:08:11 UTC
Last online:2019-06-02

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-05-30 07:02:45ac7206f1061d9433edbae336710309e7Virustotal results 47/73 (64.38%) 194.87.102.92443TrickBot
2019-05-30 07:02:45ac7206f1061d9433edbae336710309e7Virustotal results 47/73 (64.38%) 194.87.102.92443TrickBot
2019-05-30 03:22:228ebbd614dd4af1a126ea25f9625cda50Virustotal results 44/68 (64.71%) 194.87.102.92443TrickBot
2019-05-30 03:22:228ebbd614dd4af1a126ea25f9625cda50Virustotal results 44/68 (64.71%) 194.87.102.92443TrickBot
2019-05-28 23:22:03a36e30acbcfbe582ba1b59d70bd5f009Virustotal results 40/72 (55.56%) 194.87.102.92443Heodo
2019-05-27 16:21:00a8243d9095ad5bf400fe6e51dda35ef9Virustotal results 52/73 (71.23%) 194.87.102.92443Heodo
2019-05-26 23:53:2348fbf7b957a0f4efe96615bf4c323c4bVirustotal results 36/72 (50.00%) 194.87.102.92443TrickBot
2019-05-26 21:48:378814c90ed6b79b43030503e5fc2e5b3cVirustotal results 55/70 (78.57%) 194.87.102.92443IcedID
2019-05-24 06:01:51b5803240b6300e72bf1f33c9c96ef2bbVirustotal results 46/71 (64.79%) 194.87.102.92443TrickBot

# of malware samples: 9