Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 104.161.32.102. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:104.161.32.102
Hostname:redrockstar.com
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS53755
AS name:IOFLOOD
Country:- US
First seen:2020-09-06 17:11:23 UTC
Last seen:2020-09-15 17:34:42 UTC
Last online:2020-09-15

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-09-18 04:38:46806639ce7cd5fd8e8cba2f15a58d8e30n/a104.161.32.102447TrickBot
2020-09-18 03:59:49591c2cfd101c3300791935e040fa923fn/a104.161.32.102447TrickBot
2020-09-18 02:56:24531c0a4d69b52ec34df6f8748875b712n/a104.161.32.102447
2020-09-17 21:39:3216c455772cd5c5849296a6de69e45918Virustotal results 51 / 69 (73.91%) 104.161.32.102447TrickBot
2020-09-15 20:09:2730fe10fa17d53c9faa232ec1fc40c68en/a104.161.32.102447TrickBot
2020-09-14 20:35:1336262bb64027c9c327ca3007b9553897Virustotal results 42 / 67 (62.69%) 104.161.32.102447TrickBot
2020-09-13 05:41:2236237540df617d671e95acf8999d4ff9n/a104.161.32.102447TrickBot
2020-09-12 23:39:178187ed7c35986608a32aa31a6c7879dan/a104.161.32.102447TrickBot
2020-09-12 18:23:13c2c6c3c3df92dc28fd56d3f997362e12n/a104.161.32.102447TrickBot
2020-09-12 14:58:049c97cd5816be33a7d71c7414807abe59n/a104.161.32.102447TrickBot
2020-09-12 14:32:27e38e52b0669e58f50d6365d983f3e2c6n/a104.161.32.102447TrickBot
2020-09-12 01:49:0579993c0de5bc330dbc36d0a1a644a2f5n/a104.161.32.102447TrickBot
2020-09-11 22:26:26cababcd6fc3991ce07dbec8aa63648f9n/a104.161.32.102447TrickBot
2020-09-11 21:30:45895095cd66ab6b591a716f0cab78e5e2n/a104.161.32.102447TrickBot
2020-09-11 12:59:182af5581b7e5b016cf160e79412baaa2dn/a104.161.32.102447TrickBot
2020-09-09 05:24:29cc9545175505f66a50dafec201e033e8Virustotal results 39 / 68 (57.35%) 104.161.32.102447TrickBot

# of malware samples: 16