Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 91.240.85.141. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:91.240.85.141
Hostname:su.xh
Status:Offline
Spamhaus SBL:SBL452114
Malware:TrickBot
AS number:AS29182
AS name:THEFIRST-AS
Country:- RU
First seen:2019-07-10 07:30:34 UTC
Last seen:2019-07-10 07:30:34 UTC
Last online:2019-07-11

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-11 11:32:031dbf6aa3e5d9c6cf78488923698b77a0Virustotal results 53/68 (77.94%) 91.240.85.141447TrickBot
2019-07-11 07:59:592235245b3f8df480f097f4fb0459aae7Virustotal results 40/70 (57.14%) 91.240.85.141447TrickBot
2019-07-11 02:04:55fce03fdf7f47d11cb6c223f90a75b741Virustotal results 48/71 (67.61%) 91.240.85.141447TrickBot
2019-07-10 18:10:08801bc46d70d8ab9f61de71aaa6720957Virustotal results 45/70 (64.29%) 91.240.85.141447TrickBot

# of malware samples: 4