Browse Botnet C&Cs

You are currently viewing the database entry for the TL botnet command&control server (C&C) 172.245.157.135. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:172.245.157.135
Hostname:172-245-157-135-host.colocrossing.com
Status:Offline
Spamhaus SBL:Not listed
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING
Country:- US
First seen:2020-03-20 14:40:59 UTC
Last seen:2020-03-20 14:40:59 UTC
Last online:2020-03-26

Malware Samples


The table below documents all malware samples associated with this TL botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-04-03 17:22:5174bbf77b8c6572721dc128eff166bb87n/a172.245.157.135443TrickBot
2020-04-03 16:26:371e7f4e0a8c2177c16168209477085380n/a172.245.157.135443TrickBot
2020-04-03 15:19:16e61d15e19a5ecdfd1c346ac394ee08f4n/a172.245.157.135443TrickBot
2020-04-03 07:40:220de387dc76240287edababc0f777c66dn/a172.245.157.135443TrickBot
2020-04-03 06:58:574a5d2b39603b2c6959243f45398a7649n/a172.245.157.135443TrickBot
2020-04-03 06:50:16758a0be81494122275f3d8f11cb27064n/a172.245.157.135443TrickBot
2020-04-02 19:53:563da1ad03ca904b945103874be39a8eean/a172.245.157.135443TrickBot
2020-04-02 16:23:22f45409cdb10dc306b14ca5f4e9957261n/a172.245.157.135443TrickBot
2020-04-02 15:48:49bfa49cd8d234413103e977226e29b804n/a172.245.157.135443TrickBot
2020-04-02 15:37:43db351fe5e1c74c9628a2510953ff4b6fn/a172.245.157.135443TrickBot
2020-03-31 20:30:56c4e284ec48e8a0f2628d853a98baf25dVirustotal results 27 / 72 (37.50%) 172.245.157.135443TrickBot
2020-03-26 18:25:0403f0914f48b511b91717cd5faac55449n/a172.245.157.135443TrickBot

# of malware samples: 12