Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 47.156.64.4. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:47.156.64.4
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS5650
AS name:FRONTIER-FRTR
Country:- US
First seen:2020-03-13 19:49:25 UTC
Last seen:2020-03-25 16:41:39 UTC
Last online:2020-03-14

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-25 22:33:1736ed9437ae80079284518396ed377445n/a47.156.64.480Heodo
2020-03-22 08:31:511e96b3d042c507591aba2aa69a63b483n/a47.156.64.480Heodo
2020-03-22 00:44:40a4708e15384ef20b7f3ba8a3c892df1cVirustotal results 26 / 73 (35.62%) 47.156.64.480Heodo
2020-03-13 23:20:433cf80628f61e6ef4d279f627864cc0c7Virustotal results 8 / 70 (11.43%) 47.156.64.480Heodo

# of malware samples: 4