Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 31.148.99.63. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:31.148.99.63
Hostname:okta.hgj
Status:Offline
Spamhaus SBL:SBL461564
Malware:TrickBot
AS number:AS48666
AS name:AS-MAROSNET Moscow, Russia
Country:- RU
First seen:2019-10-16 21:57:31 UTC
Last seen:2019-10-17 05:16:35 UTC
Last online:2019-10-17

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-10-28 03:45:479098454f7746b3578479cdecfbf31e54Virustotal results 45 / 69 (65.22%) 31.148.99.63443
2019-10-19 08:24:576bb536313e7fa9bfc538a198a8c8c657Virustotal results 10 / 68 (14.71%) 31.148.99.63443Heodo
2019-10-18 10:21:49dfed1fcbbc2d8936cf71ab18e165af30Virustotal results 5 / 70 (7.14%) 31.148.99.63443Heodo
2019-10-17 15:48:085f836ebaaaa6f91b183eec4ebfde162bVirustotal results 45/69 (65.22%) 31.148.99.63443TrickBot
2019-10-17 13:58:591f98c4d260f70301e71055f71681c4c4Virustotal results 52 / 70 (74.29%) 31.148.99.63443TrickBot
2019-10-17 05:37:0124e98e65642c95aa0225f0398d00af27Virustotal results 56/69 (81.16%) 31.148.99.63443TrickBot
2019-10-17 05:37:0124e98e65642c95aa0225f0398d00af27Virustotal results 56/69 (81.16%) 31.148.99.63443TrickBot
2019-10-17 05:37:0124e98e65642c95aa0225f0398d00af27Virustotal results 56/69 (81.16%) 31.148.99.63443TrickBot
2019-10-17 05:37:0124e98e65642c95aa0225f0398d00af27Virustotal results 56/69 (81.16%) 31.148.99.63443TrickBot
2019-10-17 05:37:0124e98e65642c95aa0225f0398d00af27Virustotal results 56/69 (81.16%) 31.148.99.63443TrickBot
2019-10-16 22:19:28cca4e81e95fedb4a8f8aa3e8d546abffVirustotal results 53/70 (75.71%) 31.148.99.63443TrickBot

# of malware samples: 11