Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 54.37.195.102. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:54.37.195.102
Hostname:ip102.ip-54-37-195.eu
Status:Offline
Spamhaus SBL:SBL457304
Malware:TrickBot
AS number:AS16276
AS name:OVH
Country:- FR
First seen:2019-08-14 14:33:38 UTC
Last seen:2019-08-14 14:33:38 UTC
Last online:2019-08-15

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-08-16 10:22:253662e803f681814b534451aef8f6542fVirustotal results 43/68 (63.24%) 54.37.195.102447TrickBot
2019-08-16 07:39:31e306e5a672d5d8ffa20041545700199aVirustotal results 46/69 (66.67%) 54.37.195.102447TrickBot
2019-08-14 17:11:5956f0b778512b017c2daee95aff2ee204Virustotal results 42/66 (63.64%) 54.37.195.102447TrickBot
2019-08-14 16:58:37edd569b040ec72a143fd3c5c2b8a3bdaVirustotal results 42 / 67 (62.69%) 54.37.195.102447TrickBot

# of malware samples: 4