Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 23.94.93.104. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:23.94.93.104
Hostname:23-94-93-104-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL455052
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-07-21 04:04:59 UTC
Last seen:2019-07-22 00:52:52 UTC
Last online:2019-07-24

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-25 10:16:26a38aad97752292adc6f5b7617f07bc44Virustotal results 37/69 (53.62%) 23.94.93.104447TrickBot
2019-07-24 05:15:445e15d758ce6d3202deb4c2e1c2a55f8cVirustotal results 26/71 (36.62%) 23.94.93.104447TrickBot
2019-07-24 04:56:051d5009fb9275b7399376accd4ea4a3e5Virustotal results 27/72 (37.50%) 23.94.93.104447TrickBot
2019-07-24 04:31:486417e8943b3f9b997470cd7c2c459500Virustotal results 37/71 (52.11%) 23.94.93.104447TrickBot
2019-07-24 03:26:32a85252ea4abcc50dcc28b9f78c26eed2Virustotal results 35/70 (50.00%) 23.94.93.104447TrickBot
2019-07-24 03:26:32a85252ea4abcc50dcc28b9f78c26eed2Virustotal results 35/70 (50.00%) 23.94.93.104447TrickBot
2019-07-23 19:32:095f1f303ff136058c0a9002d20469af8fVirustotal results 37/71 (52.11%) 23.94.93.104447TrickBot
2019-07-23 14:59:452ff9911806c60590d6afb5dcc99e9e71Virustotal results 49/72 (68.06%) 23.94.93.104447TrickBot

# of malware samples: 8