Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 92.38.171.54. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:92.38.171.54
Hostname:sgah.has
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS202422
AS name:GHOST
Country:- US
First seen:2019-12-08 17:17:01 UTC
Last seen:2019-12-08 17:17:01 UTC
Last online:2019-12-09

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-12-13 20:15:41bf18c9433da237aac64c58d06ccfb47cn/a92.38.171.54443TrickBot
2019-12-13 04:05:30a16978d09ff87f4cf84f3e0af304af6aVirustotal results 27 / 71 (38.03%) 92.38.171.54443TrickBot
2019-12-11 20:51:424ca2e4040701b2d2a319b32e0ac4458aVirustotal results 27 / 69 (39.13%) 92.38.171.54443TrickBot
2019-12-11 18:52:4651adc9815ec19a77a0d605abb14cdbe6Virustotal results 31 / 71 (43.66%) 92.38.171.54443TrickBot
2019-12-11 14:37:49d561714e0b7bf4abf5c8c1e9393216a9Virustotal results 30 / 71 (42.25%) 92.38.171.54443TrickBot
2019-12-10 08:45:500b0b3d4714291e3ee1ebab0ab4626e03Virustotal results 20 / 70 (28.57%) 92.38.171.54443TrickBot
2019-12-10 00:44:01d25c6a822a13ec3259bcfe1ffc67b871n/a92.38.171.54443TrickBot
2019-12-09 23:06:33d4c333c36fc495cda16ce20f56b395bfn/a92.38.171.54443TrickBot
2019-12-09 22:35:227d383b39a472d6d3761e0d95230e5592n/a92.38.171.54443TrickBot
2019-12-08 18:52:043874eddda7ff2a3dbe64041be60bf2e9Virustotal results 28 / 71 (39.44%) 92.38.171.54443TrickBot

# of malware samples: 10