Browse Botnet C&Cs

You are currently viewing the database entry for the TrickBot botnet command&control server (C&C) 23.94.96.203. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:23.94.96.203
Hostname:23-94-96-203-host.colocrossing.com
Status:Offline
Spamhaus SBL:SBL455204
Malware:TrickBot
AS number:AS36352
AS name:AS-COLOCROSSING - ColoCrossing
Country:- US
First seen:2019-07-24 23:35:38 UTC
Last seen:2019-07-25 23:14:07 UTC
Last online:2019-07-27

Malware Samples


The table below documents all malware samples associated with this TrickBot botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-07-26 09:30:264718bd18b64a0653fa88add6afb8494cVirustotal results 40 / 69 (57.97%) 23.94.96.203447TrickBot
2019-07-26 06:03:24971e1279c12a30fc3f93112377d27d04Virustotal results 41 / 70 (58.57%) 23.94.96.203447TrickBot
2019-07-25 05:16:502651406d6731ea9f9aeed12070f9efd1Virustotal results 45/69 (65.22%) 23.94.96.203447TrickBot

# of malware samples: 3