Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 107.172.248.84. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:107.172.248.84
Hostname:107-172-248-84-host.colocrossing.com
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-10-07 11:53:32 UTC
Last seen:2019-10-08 13:35:54 UTC
Last online:2019-10-08

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-10-08 13:49:19131f9af9aabc614e302f55e2900909b9Virustotal results 46/60 (76.67%) 107.172.248.84447TrickBot
2019-10-08 03:27:194afcb25d7264508164dd85695c3e7689Virustotal results 48/68 (70.59%) 107.172.248.84447TrickBot
2019-10-08 02:57:27f4b9be66615122112dadf9e3f0a97516Virustotal results 28/70 (40.00%) 107.172.248.84447TrickBot
2019-10-07 12:04:374933483322e49acaba2838fc79c683ccVirustotal results 50/70 (71.43%) 107.172.248.84447TrickBot

# of malware samples: 4