Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 5.196.247.4. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:5.196.247.4
Hostname:ip4.ip-5-196-247.eu
Status:Offline
Spamhaus SBL:SBL453588
Malware:TrickBot
AS number:AS16276
AS name:OVH
Country:- FR
First seen:2019-07-09 02:34:31 UTC
Last seen:2019-07-09 02:34:31 UTC
Last online:2019-07-09

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-09 12:52:56701751671a765d809dd575364e6bb175Virustotal results 48/71 (67.61%) 5.196.247.4447TrickBot
2019-07-09 08:19:3143ba16c92fcf50a581133591d7d2f52dVirustotal results 39/70 (55.71%) 5.196.247.4447TrickBot
2019-07-09 08:19:3143ba16c92fcf50a581133591d7d2f52dVirustotal results 39/70 (55.71%) 5.196.247.4447TrickBot

# of malware samples: 3