Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 194.87.95.54. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:194.87.95.54
Hostname:ptr.ruvds.com
Status:Offline
Spamhaus SBL:SBL444604
Malware:TrickBot
AS number:AS48347
AS name:MTW-AS
Country:- RU
First seen:2019-12-31 16:02:17 UTC
Last seen:2019-12-31 16:02:17 UTC
Last online:2020-01-04

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-01-06 05:14:02a070527ce267196f589df34903a0e89cVirustotal results 34 / 71 (47.89%) 194.87.95.54447TrickBot
2020-01-06 03:40:4566bd985281120660178b64ab65ae71d9n/a194.87.95.54447TrickBot
2020-01-04 16:54:56a9dbbfab0ef70cab0bfc8d5b8a276adbn/a194.87.95.54447TrickBot
2019-12-31 17:00:58a3b7720a3f773044262ee09207ad35can/a194.87.95.54447TrickBot

# of malware samples: 4