Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 85.204.116.131. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:85.204.116.131
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS48874
AS name:HOSTMAZE HOSTMAZE
Country:- RO
First seen:2019-07-19 15:05:41 UTC
Last seen:2019-07-19 15:58:42 UTC
Last online:2019-07-19

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-25 11:12:055aa5b4494eb60824b16b25f25b2e8206Virustotal results 15/71 (21.13%) 85.204.116.131443TrickBot
2019-07-22 05:39:0891ed189a651668da71e54b125f3d2b3bVirustotal results 53/71 (74.65%) 85.204.116.131443TrickBot
2019-07-21 16:37:452c5c0b481c4c9298d593489504ac4e3bVirustotal results 32/69 (46.38%) 85.204.116.131443TrickBot
2019-07-19 16:28:23d10a826924182de564cd10bbbb62aca0Virustotal results 52/70 (74.29%) 85.204.116.131443TrickBot
2019-07-19 15:20:4060fa47cdfaca340fbe4dfc21cea300a5Virustotal results 31/70 (44.29%) 85.204.116.131443TrickBot
2019-07-19 15:20:4060fa47cdfaca340fbe4dfc21cea300a5Virustotal results 31/70 (44.29%) 85.204.116.131443TrickBot

# of malware samples: 6