Browse Botnet C&Cs

You are currently viewing the database entry for the TL botnet command&control server (C&C) 103.94.122.254. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:103.94.122.254
Hostname:n/a
Status:- Online
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS9341
AS name:ICONPLN-ID-AP-ISP PT INDONESIA COMNETS PLUS
Country:- ID
First seen:2020-01-09 02:35:23 UTC
Last seen:2020-01-16 12:35:03 UTC
Last online:2020-01-18

Malware Samples


The table below documents all malware samples associated with this TL botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-01-16 13:33:527344d0146141121e0b5041ebbc160b0dn/a103.94.122.2548082TrickBot
2020-01-11 21:58:49f7c53e6b36b30fab93090ac38053d248n/a103.94.122.2548082TrickBot
2020-01-09 01:44:009beb2b6689272c4a8de0924178046267n/a103.94.122.2548082TrickBot
2020-01-09 01:43:4106dc82e8ef422fb679d563131bb39ef0n/a103.94.122.2548082TrickBot

# of malware samples: 4