Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 198.12.101.164. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:198.12.101.164
Hostname:198-12-101-164-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL456180
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-08-01 07:21:32 UTC
Last seen:2019-08-01 21:35:58 UTC
Last online:2019-08-02

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-08-05 12:01:24061e9070c4d4d00db56d3859aff75340Virustotal results 38 / 70 (54.29%) 198.12.101.164447TrickBot
2019-08-05 06:50:1659927f8ef4d347252eab06386e8078f4Virustotal results 37/71 (52.11%) 198.12.101.164447TrickBot
2019-08-04 17:41:32b92631c65ed682fa3ffa21888f70ee49Virustotal results 37 / 71 (52.11%) 198.12.101.164447TrickBot
2019-08-03 13:17:52b6de336f82c7915e3e3f9c6f60ee9792Virustotal results 38/70 (54.29%) 198.12.101.164447TrickBot
2019-08-03 11:26:21b4b6dc37a338add2f5f19c2fffef149fVirustotal results 39/70 (55.71%) 198.12.101.164447TrickBot
2019-08-03 08:46:21e296ecc110e0a377bf88bbe52003e20cVirustotal results 38/70 (54.29%) 198.12.101.164447TrickBot
2019-08-03 08:46:09d34a18789b840a69ef6321536fb25cc1Virustotal results 33/63 (52.38%) 198.12.101.164447TrickBot
2019-08-03 08:46:09d34a18789b840a69ef6321536fb25cc1Virustotal results 33/63 (52.38%) 198.12.101.164447TrickBot
2019-08-03 06:56:581848a72d2ea65279311841870b9d8a1fVirustotal results 38/71 (53.52%) 198.12.101.164447TrickBot
2019-08-02 08:09:38f8e9360f469fa94d9b3652df4106ee4fVirustotal results 35/72 (48.61%) 198.12.101.164447TrickBot
2019-08-01 09:35:229a66543163463795a46a47dd6e5d2f34Virustotal results 36/71 (50.70%) 198.12.101.164447TrickBot
2019-08-01 08:43:49274c62e836d72ad4417a3afa5cd65adaVirustotal results 35 / 70 (50.00%) 198.12.101.164447TrickBot

# of malware samples: 12