Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 107.172.143.248. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:107.172.143.248
Hostname:107-172-143-248-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL459501
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-09-18 11:08:29 UTC
Last seen:2019-09-18 21:57:21 UTC
Last online:2019-09-18

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-09-19 08:59:58801e94f410bd4111487a221f836e0ad3Virustotal results 24/69 (34.78%) 107.172.143.248447TrickBot
2019-09-19 08:12:094ef0754cbeeff2cc4037cf2458294133Virustotal results 48/70 (68.57%) 107.172.143.248447TrickBot
2019-09-19 00:09:574a8214af876517a74cfee38eb8853cdbVirustotal results 49/70 (70.00%) 107.172.143.248447TrickBot
2019-09-18 22:05:24428567bf97e1a9a196aa5707e3d4d9ecVirustotal results 48/69 (69.57%) 107.172.143.248447TrickBot
2019-09-18 21:05:39ca19db4457deda6105187f4f6ca62443Virustotal results 46/68 (67.65%) 107.172.143.248447TrickBot
2019-09-18 19:54:18d3e28956df0a42a887b2014fdb7106f6Virustotal results 49/70 (70.00%) 107.172.143.248447TrickBot
2019-09-18 19:54:18d3e28956df0a42a887b2014fdb7106f6Virustotal results 49/70 (70.00%) 107.172.143.248447TrickBot
2019-09-18 18:07:00ffc39c5c1e374f4f217e40855ff71d8bVirustotal results 46/69 (66.67%) 107.172.143.248447TrickBot
2019-09-18 16:25:33e30e0d70e020cc4261a889fb701fde94Virustotal results 48/71 (67.61%) 107.172.143.248447TrickBot
2019-09-18 16:04:37f31efd4bb76bcc729b98cb51f8bd74d0Virustotal results 44/69 (63.77%) 107.172.143.248447TrickBot
2019-09-18 11:19:010cff2ae35e8d255753ea73e233a2543bVirustotal results 48/69 (69.57%) 107.172.143.248447TrickBot

# of malware samples: 11