Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 107.172.143.91. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:107.172.143.91
Hostname:107-172-143-91-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL460128
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-09-24 17:36:00 UTC
Last seen:2019-09-25 12:00:14 UTC
Last online:2019-09-25

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-09-26 08:09:0793c606898c6059298e502c38d6846110Virustotal results 50/70 (71.43%) 107.172.143.91447TrickBot
2019-09-26 07:59:254a664d67c52666d178573e5a339f45b1Virustotal results 50/71 (70.42%) 107.172.143.91447TrickBot
2019-09-26 06:39:28404d344a0f7fa89fdba77db7ce97bcb2Virustotal results 53/69 (76.81%) 107.172.143.91447TrickBot
2019-09-25 12:13:4701f36b42fb0ece086419b63525ebc8a3Virustotal results 50/69 (72.46%) 107.172.143.91447TrickBot
2019-09-25 11:01:01b836020cb68eb6343b36ed0137b11e79Virustotal results 50/70 (71.43%) 107.172.143.91447TrickBot
2019-09-25 08:50:4792b1204a5ff843eeefc371d275eb600eVirustotal results 54/69 (78.26%) 107.172.143.91447TrickBot
2019-09-25 05:31:513375bd0353b7e7cd29c37da328dcf388Virustotal results 55/69 (79.71%) 107.172.143.91447TrickBot
2019-09-25 04:28:04cc7e7a0dd54222833fd420331add257eVirustotal results 49/69 (71.01%) 107.172.143.91447TrickBot
2019-09-25 04:25:259727d5744917ab8b865fda7b98f4dd3dVirustotal results 53/68 (77.94%) 107.172.143.91447TrickBot

# of malware samples: 9