Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 5.2.79.72. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:5.2.79.72
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS60404
AS name:LITESERVER
Country:- NL
First seen:2020-01-19 20:07:41 UTC
Last seen:2020-01-27 14:04:42 UTC
Last online:2020-01-28

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-01-31 03:47:3416513e5ec863bade24bf0dc765bafd1fn/a5.2.79.72447TrickBot
2020-01-31 01:59:1860998023754ddac473a2c9b1f357009fn/a5.2.79.72447TrickBot
2020-01-29 02:59:25ca64aafe99634a87ea1e786fa047904bn/a5.2.79.72447TrickBot
2020-01-28 16:24:1425e712a8ca545d6f7a020a8a03698919n/a5.2.79.72447Heodo
2020-01-27 15:16:482f435bff56c1a4b910b49a9eac5c0966n/a5.2.79.72447TrickBot
2020-01-25 04:29:00b1ebcdb3f6a26a228a00e407ec10a865Virustotal results 49 / 72 (68.06%) 5.2.79.72447TrickBot
2020-01-24 18:02:5290056b8237ab31be9de55c7868d8f750Virustotal results 49 / 73 (67.12%) 5.2.79.72447TrickBot
2020-01-19 20:37:10829c8aa3a1aa5f8d5aed73fd06da7699Virustotal results 44 / 71 (61.97%) 5.2.79.72447TrickBot

# of malware samples: 8