Browse Botnet C&Cs

You are currently viewing the database entry for the TPSRV botnet command&control server (C&C) 104.161.32.112. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:104.161.32.112
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS53755
AS name:IOFLOOD
Country:- US
First seen:2020-10-15 19:30:04 UTC
Last seen:never
Last online:2020-10-15

Malware Samples


The table below documents all malware samples associated with this TPSRV botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-10-17 23:13:2191e28c2cebd7568400f7182e2dddc66en/a104.161.32.112447TrickBot
2020-10-17 20:14:00437262fa4eaf6c91c40a40789ae11d33Virustotal results 42 / 70 (60.00%) 104.161.32.112447TrickBot
2020-10-17 20:00:163b05df6588b30c30f35a5e3550e809f8n/a104.161.32.112447TrickBot
2020-10-17 19:24:5119697d57a5a5acfb4eaaf1d802b3c5d0n/a104.161.32.112447TrickBot
2020-10-16 12:26:19716678bd0eecae0e88f3efca050f1b8bVirustotal results 4 / 61 (6.56%) 104.161.32.112447TrickBot
2020-10-16 12:14:40fc7cdf04767c60019ef104f817a9b91dVirustotal results 4 / 61 (6.56%) 104.161.32.112447TrickBot
2020-10-16 11:24:369f8559ffcbc56c47003ebb17021b102bn/a104.161.32.112447TrickBot
2020-10-16 07:33:46b40b4e84de0e8d6198bcefe779c94cc5Virustotal results 2 / 62 (3.23%) 104.161.32.112447TrickBot
2020-10-16 07:16:5305a8addc8524cce2514b4c42b896f500n/a104.161.32.112447TrickBot
2020-10-16 07:07:21d62e7f93ac9333d1f9085d38647eb363n/a104.161.32.112447TrickBot
2020-10-16 07:06:324e8821b89bdae08be2988581aee4c302Virustotal results 3 / 61 (4.92%) 104.161.32.112447TrickBot

# of malware samples: 11