Browse Botnet C&Cs

You are currently viewing the database entry for the TC botnet command&control server (C&C) 89.228.243.148. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:89.228.243.148
Hostname:host-89-228-243-148.dynamic.mm.pl
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS21021
AS name:MULTIMEDIA-AS Cable DTV Internet Voice Provider in Poland.
Country:- PL
First seen:2019-10-21 10:05:03 UTC
Last seen:2019-10-19 17:54:28 UTC

Malware Samples


The table below documents all malware samples associated with this TC botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-11-11 04:44:086448d0f44d78b741020a5973c0aaa2b6n/a89.228.243.148449TrickBot
2019-11-05 05:05:1370ed593e1a92803b3333e900d869f363Virustotal results 49 / 69 (71.01%) 89.228.243.148449TrickBot
2019-10-21 21:59:2973cbaca3359b9c9016751a492a8b6220Virustotal results 5 / 70 (7.14%) 89.228.243.148449Heodo
2019-10-21 21:59:2973cbaca3359b9c9016751a492a8b6220Virustotal results 5 / 70 (7.14%) 89.228.243.148449Heodo
2019-10-17 11:05:51b8867402a039b18124d0fb50048db037Virustotal results 4 / 70 (5.71%) 89.228.243.148449TrickBot
2019-10-17 11:05:51b8867402a039b18124d0fb50048db037Virustotal results 4 / 70 (5.71%) 89.228.243.148449TrickBot

# of malware samples: 6