Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 31.131.21.168. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:31.131.21.168
Hostname:hang.22339.com.cn
Status:- Online
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS56851
AS name:VPS-UA-AS
Country:- NL
First seen:2020-03-19 15:20:53 UTC
Last seen:2020-03-29 18:18:02 UTC
Last online:2020-03-30

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-29 23:21:57c267908dba5f2a9b9d4ac027aac5999cVirustotal results 30 / 72 (41.67%) 31.131.21.168447TrickBot
2020-03-29 22:46:28496ff4cb06a7ea1f08ec6ca754dfa208Virustotal results 30 / 72 (41.67%) 31.131.21.168447TrickBot
2020-03-29 21:46:24002eb7b41cd118ab6641e784af6ef373Virustotal results 32 / 73 (43.84%) 31.131.21.168447TrickBot
2020-03-29 21:30:075a1ba44b21a6141fd00f1904d6803aebVirustotal results 34 / 73 (46.58%) 31.131.21.168447TrickBot
2020-03-28 20:20:13b6da3555453863cbc6a81424ce7e430cVirustotal results 40 / 71 (56.34%) 31.131.21.168447TrickBot
2020-03-28 20:19:16386b9e8274fe9c01c885930dc5ced723Virustotal results 37 / 72 (51.39%) 31.131.21.168447TrickBot
2020-03-27 20:15:222be81b2afdef997c380875b4bd5adcaaVirustotal results 36 / 72 (50.00%) 31.131.21.168447TrickBot
2020-03-22 20:10:53510d97fe1abe64083018af0fbf2c1e93Virustotal results 44 / 73 (60.27%) 31.131.21.168447TrickBot
2020-03-21 19:07:1340de485de461bb20852ac4a0e28ce2cfVirustotal results 46 / 73 (63.01%) 31.131.21.168447TrickBot
2020-03-19 15:49:36d9055547fc5e750e1c2e43116fb69c90n/a31.131.21.168447TrickBot

# of malware samples: 10