Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 192.227.204.230. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:192.227.204.230
Hostname:192-227-204-230-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL454491
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-07-14 04:24:28 UTC
Last seen:2019-07-14 04:24:28 UTC
Last online:2019-07-18

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-19 08:33:113ec36b459d940b851b26cba7f011699dVirustotal results 54/71 (76.06%) 192.227.204.230447TrickBot
2019-07-18 23:16:52e2292bdb6a5081fc027042768155fc50Virustotal results 45/68 (66.18%) 192.227.204.230447TrickBot
2019-07-18 19:29:39d63c1ebc5f44db4ac49116b10a1a13cbVirustotal results 53/72 (73.61%) 192.227.204.230447TrickBot
2019-07-15 18:32:002d2c0ffa0625bc08f66471464fcef91dVirustotal results 47/71 (66.20%) 192.227.204.230447TrickBot

# of malware samples: 4