Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 24.90.102.247. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:24.90.102.247
Hostname:cpe-24-90-102-247.nyc.res.rr.com
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS12271
AS name:SCRR-12271 - Time Warner Cable Internet LLC, US
Country:- US
First seen:2018-08-29 13:51:12 UTC
Last seen:2018-08-31 03:12:20 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-08 17:15:06d214f50d67235235794193fc7ad6c6edVirustotal results 47/68 (69.12%) 24.90.102.247443Heodo
2018-09-02 10:37:434747a10c9858df8e68a7657818441333Virustotal results 43/68 (63.24%) 24.90.102.247443Heodo
2018-08-31 06:04:06b5bda46e3f9832d656edd1216f56b04dVirustotal results 18/67 (26.87%) 24.90.102.247443Heodo
2018-08-30 23:30:47b7297f55e3ef0015d8d920541f9cebabVirustotal results 25/68 (36.76%) 24.90.102.247443Heodo
2018-08-30 16:25:46a2c0f9eb695c37acd50b6da0dd5ce642Virustotal results 17/69 (24.64%) 24.90.102.247443Heodo
2018-08-30 11:51:2908fdf83f3dba4fc515f532cd4b2cc4c9Virustotal results 16/68 (23.53%) 24.90.102.247443Heodo
2018-08-30 11:48:3771710dd575ab483f112c0d6ce531d7fbVirustotal results 21/68 (30.88%) 24.90.102.247443Heodo
2018-08-30 09:36:0954ed02b161c49720c2409382caa8b873Virustotal results 14/68 (20.59%) 24.90.102.247443Heodo

# of malware samples: 8