Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 192.3.146.221. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:192.3.146.221
Hostname:192-3-146-221-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL457859
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-08-21 04:38:49 UTC
Last seen:2019-08-21 04:38:49 UTC
Last online:2019-08-21

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-08-27 13:38:0082050e6949c5a2c1a28cafeff46e7d76Virustotal results 45/70 (64.29%) 192.3.146.221447TrickBot
2019-08-25 21:07:47666841b930b95766d5ca06858e4f8aecVirustotal results 47/70 (67.14%) 192.3.146.221447TrickBot
2019-08-25 17:34:04a997d0cd6e562268174ca93cd40f2096Virustotal results 49/69 (71.01%) 192.3.146.221447TrickBot
2019-08-21 07:00:15af2cdcdb7283ddafdb773d1d4eef6daaVirustotal results 51/69 (73.91%) 192.3.146.221447TrickBot

# of malware samples: 4