Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 89.223.91.12. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:89.223.91.12
Hostname:204715.simplecloud.ru
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS56534
AS name:PIRIX-INET-AS PIRIX, St.Petersburg, Russia
Country:- RU
First seen:2019-05-19 07:13:12 UTC
Last seen:2019-05-26 00:23:05 UTC
Last online:2019-05-27

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-05-31 16:06:23b89a58b7e3df49e24e7210f5d754b4b0Virustotal results 38/72 (52.78%) 89.223.91.12443TrickBot
2019-05-28 23:48:14570d81abf5e5055fb8e7d8e896c8e15eVirustotal results 43/71 (60.56%) 89.223.91.12443TrickBot
2019-05-28 23:22:03a36e30acbcfbe582ba1b59d70bd5f009Virustotal results 40/72 (55.56%) 89.223.91.12443Heodo
2019-05-26 03:38:2536566e9b65d91f050cb460c9c2230afeVirustotal results 49/72 (68.06%) 89.223.91.12443TrickBot
2019-05-26 03:38:2536566e9b65d91f050cb460c9c2230afeVirustotal results 49/72 (68.06%) 89.223.91.12443TrickBot
2019-05-26 03:38:2536566e9b65d91f050cb460c9c2230afeVirustotal results 49/72 (68.06%) 89.223.91.12443TrickBot
2019-05-23 13:56:16ce8e9a08f47d0fc80d66b756c363e6d6Virustotal results 32/72 (44.44%) 89.223.91.12443TrickBot
2019-05-23 13:56:16ce8e9a08f47d0fc80d66b756c363e6d6Virustotal results 32/72 (44.44%) 89.223.91.12443TrickBot
2019-05-23 13:56:16ce8e9a08f47d0fc80d66b756c363e6d6Virustotal results 32/72 (44.44%) 89.223.91.12443TrickBot

# of malware samples: 9