Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 192.3.83.168. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:192.3.83.168
Hostname:192-3-83-168-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL455472
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-07-25 00:35:45 UTC
Last seen:2019-07-29 23:38:41 UTC
Last online:2019-07-31

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-30 07:54:5314704354a46a198de24916dedf118f99Virustotal results 39 / 71 (54.93%) 192.3.83.168447TrickBot
2019-07-28 21:28:40014d58c15e0dcfc7a9685b4289ba87d7Virustotal results 33/69 (47.83%) 192.3.83.168447TrickBot
2019-07-27 21:48:0644883149ff763f8f09a8272e7e7f7ce8Virustotal results 40/70 (57.14%) 192.3.83.168447TrickBot
2019-07-27 09:22:458cf3ad5a7e88fc60288091b98bad7f0fVirustotal results 39/71 (54.93%) 192.3.83.168447TrickBot
2019-07-27 07:00:45b4f6bf0a6100e116ddaaf423ac1788feVirustotal results 39/71 (54.93%) 192.3.83.168447TrickBot
2019-07-26 23:19:45b62aa244c6661c8812660b89b7453c59Virustotal results 39/71 (54.93%) 192.3.83.168447TrickBot

# of malware samples: 6