Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 89.32.41.104. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:89.32.41.104
Hostname:slot0.email-host.cf
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS48874
AS name:HOSTMAZE HOSTMAZE
Country:- RO
First seen:2019-11-18 16:56:05 UTC
Last seen:2019-11-22 05:43:49 UTC
Last online:2019-11-22

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-11-24 08:06:088c61b49564e4bfaf77548ee09e7255eaVirustotal results 56/70 (80.00%) 89.32.41.104447TrickBot
2019-11-22 06:13:05b0c357e60c40a86742966f9a8b4722d6Virustotal results 47/69 (68.12%) 89.32.41.104447TrickBot
2019-11-21 00:35:17a0c3c19228a44be288b97a172ee49301Virustotal results 12 / 71 (16.90%) 89.32.41.104447TrickBot
2019-11-20 10:42:533f33c1885e2b8d3e7e4e377054e22882Virustotal results 53/68 (77.94%) 89.32.41.104447TrickBot
2019-11-20 06:58:20c05df1caf4957d7a56206fbc34639ae9Virustotal results 50/68 (73.53%) 89.32.41.104447TrickBot
2019-11-19 02:33:45cfcac1dd8e51d5a68b4f5373570bbf8dVirustotal results 43/70 (61.43%) 89.32.41.104447TrickBot
2019-11-18 19:22:1653f1997b27a7976728ccb59db182fd0fVirustotal results 31 / 65 (47.69%) 89.32.41.104447TrickBot
2019-11-18 17:05:386d7897e70987b09fec01dd2abeefd7a1Virustotal results 31 / 69 (44.93%) 89.32.41.104447TrickBot

# of malware samples: 8