Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 107.172.29.105. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:107.172.29.105
Hostname:107-172-29-105-host.colocrossing.com
Status:- Online
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-12-02 05:02:47 UTC
Last seen:2019-12-03 18:11:02 UTC
Last online:2019-12-06

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-12-03 19:01:074d653a94d95358d84fc0baecd14ac74cVirustotal results 25/71 (35.21%) 107.172.29.105447TrickBot
2019-12-03 11:18:35386f613b27a5fa30dfa8b20ddae2d065Virustotal results 31 / 69 (44.93%) 107.172.29.105447TrickBot
2019-12-03 09:41:50b1fb5e6180e04ad73d78ad6a979bfc7bVirustotal results 48/71 (67.61%) 107.172.29.105447TrickBot
2019-12-02 06:45:56bf5318a237c79bdf0d403f52d898b194Virustotal results 54/71 (76.06%) 107.172.29.105447TrickBot
2019-12-02 05:14:06a4d33095b4ee54bcbfb0c98e73fda700Virustotal results 45/70 (64.29%) 107.172.29.105447TrickBot

# of malware samples: 5