Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 54.38.127.31. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:54.38.127.31
Hostname:ip31.ip-54-38-127.eu
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS16276
AS name:OVH
Country:- FR
First seen:2019-04-20 02:20:37 UTC
Last seen:2019-06-13 14:23:46 UTC
Last online:2019-06-13

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-06-13 14:34:021fc4a98bdabf9732d5c9060439ba3b7cVirustotal results 50/71 (70.42%) 54.38.127.31447TrickBot
2019-06-13 14:34:021fc4a98bdabf9732d5c9060439ba3b7cVirustotal results 50/71 (70.42%) 54.38.127.31447TrickBot
2019-06-13 14:34:021fc4a98bdabf9732d5c9060439ba3b7cVirustotal results 50/71 (70.42%) 54.38.127.31447TrickBot
2019-06-13 10:54:27fb189a882b8a022dc6a344877b327566Virustotal results 33/70 (47.14%) 54.38.127.31447TrickBot
2019-06-12 18:58:1834656f36ea8f4012c390c73be71f1d31Virustotal results 48/70 (68.57%) 54.38.127.31447TrickBot
2019-06-12 15:05:462339f501d17f9272b5e84e7f9991a138Virustotal results 47/70 (67.14%) 54.38.127.31447TrickBot
2019-06-11 20:26:24c2f3b3be32616a9798c3d8330bded87dVirustotal results 45/69 (65.22%) 54.38.127.31447TrickBot
2019-06-11 08:04:5063d2fe263b7d57596fcce8952740f562Virustotal results 48/70 (68.57%) 54.38.127.31447TrickBot
2019-06-10 14:48:3415ef60a1b653cc4e8d53ed620f7d8dceVirustotal results 48/68 (70.59%) 54.38.127.31447TrickBot
2019-04-20 06:51:19549efcb4dcc3e2ec980aa67388b44776Virustotal results 40/66 (60.61%) 54.38.127.31447TrickBot

# of malware samples: 10