Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 192.3.61.236. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:192.3.61.236
Hostname:192-3-61-236-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL455663
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-07-29 09:16:27 UTC
Last seen:2019-07-29 17:21:40 UTC
Last online:2019-07-29

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-30 04:32:2064df08da5d9e65d286e592bb590220d2Virustotal results 20 / 69 (28.99%) 192.3.61.236447TrickBot
2019-07-30 03:05:48929a8913231bd1e0d90ec8d0abdfe8b3Virustotal results 39 / 69 (56.52%) 192.3.61.236447TrickBot
2019-07-29 17:29:52e7585fbb61caa65e473ceb10262af148Virustotal results 35/70 (50.00%) 192.3.61.236447TrickBot
2019-07-29 16:21:43f1de610e2ea62d2cc20d140224cb085fVirustotal results 31 / 73 (42.47%) 192.3.61.236447TrickBot
2019-07-29 15:26:463cc5d07822036d19a85dcc29c3e34f18Virustotal results 31 / 73 (42.47%) 192.3.61.236447TrickBot
2019-07-29 09:29:1856a798d806a0bda60933078dffa0bfd5Virustotal results 37/71 (52.11%) 192.3.61.236447TrickBot

# of malware samples: 6