Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 23.94.53.171. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:23.94.53.171
Hostname:23-94-53-171-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL455743
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-07-29 22:09:56 UTC
Last seen:2019-07-30 18:33:47 UTC
Last online:2019-07-31

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-31 06:34:24c4225743d86739dd0d8eea06a3f016aaVirustotal results 33/69 (47.83%) 23.94.53.171447TrickBot
2019-07-31 03:59:03b119f66c31f2f51920f1c4c349a210d7Virustotal results 11 / 70 (15.71%) 23.94.53.171447TrickBot
2019-07-30 21:31:2272faf4dfd3ea47a125acd4964a5476c3Virustotal results 34 / 70 (48.57%) 23.94.53.171447TrickBot
2019-07-30 21:10:258bff8932550fb3e969fb1ecd02bfed59Virustotal results 28 / 70 (40.00%) 23.94.53.171447TrickBot
2019-07-30 18:49:055602867731938ae2829eae819d66dd5eVirustotal results 35/71 (49.30%) 23.94.53.171447TrickBot
2019-07-30 14:01:510eb5181e395a5cc2f73ba6e09e11be8fVirustotal results 12 / 64 (18.75%) 23.94.53.171447TrickBot

# of malware samples: 6