Browse Botnet C&Cs

You are currently viewing the database entry for the TL botnet command&control server (C&C) 107.172.141.128. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:107.172.141.128
Hostname:107-172-141-128-host.colocrossing.com
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING
Country:- US
First seen:2020-06-18 19:32:18 UTC
Last seen:2020-06-20 20:56:15 UTC
Last online:2020-06-20

Malware Samples


The table below documents all malware samples associated with this TL botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-06-24 16:02:3931def4d1354df5b998129e21d9c7b5ccn/a107.172.141.128443TrickBot
2020-06-24 15:45:101c167f5fd1731b6eb77d0a465fd65ccfn/a107.172.141.128443TrickBot
2020-06-24 15:27:3802b90870fbb6fb2cddbe415c1c33b1can/a107.172.141.128443TrickBot
2020-06-24 10:38:4392918c801845b1bcda64da1ea87bd0f7n/a107.172.141.128443TrickBot
2020-06-24 04:08:47010b3458039cf8447f90ec8d4dacab99n/a107.172.141.128443TrickBot
2020-06-20 21:12:01306386f28d06e57b127fe2d5b733008an/a107.172.141.128443TrickBot
2020-06-20 21:12:01306386f28d06e57b127fe2d5b733008an/a107.172.141.128443TrickBot
2020-06-20 21:12:01306386f28d06e57b127fe2d5b733008an/a107.172.141.128443TrickBot
2020-06-19 04:26:388ac72a4b4d58396b6bd631f5caa21591n/a107.172.141.128443TrickBot
2020-06-19 03:49:1848af7aa64f85218b281afe81b0039c89Virustotal results 34 / 74 (45.95%) 107.172.141.128443TrickBot
2020-06-19 03:36:512df278a41813543b7e12f8282b298f3en/a107.172.141.128443TrickBot
2020-06-18 20:00:07aac1ae21d626ad215391ebec680293fcVirustotal results 34 / 73 (46.58%) 107.172.141.128443TrickBot

# of malware samples: 12