Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 50.35.17.13. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:50.35.17.13
Hostname:n/a
Status:- Online
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS5650
AS name:FRONTIER-FRTR
Country:- US
First seen:2020-03-06 16:21:15 UTC
Last seen:2020-03-18 18:15:27 UTC
Last online:2020-03-29

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-18 22:49:07ce576b1a87f3eb8f63a15b2445e696d4Virustotal results 20 / 72 (27.78%) 50.35.17.1380Heodo
2020-03-17 03:11:53fa33b498cd5c883112103e5fd23527cbn/a50.35.17.1380Heodo
2020-03-14 08:14:30b7265dd28f4e2662aadba7b270f36591Virustotal results 4 / 72 (5.56%) 50.35.17.1380Heodo
2020-03-13 06:56:26b9ddfcd2f13ab633288ee8fcfc6da689Virustotal results 2 / 71 (2.82%) 50.35.17.1380Heodo
2020-03-09 23:01:4848f9f619ef477c170c72c15c4b1f3d81Virustotal results 33 / 71 (46.48%) 50.35.17.1380Heodo
2020-03-07 01:49:272619526b7d527cffc7efa869bcb7478bVirustotal results 20 / 71 (28.17%) 50.35.17.1380Heodo
2020-03-06 22:56:11df8298702bfc72e8839a0b9dd6c1cf52n/a50.35.17.1380Heodo

# of malware samples: 7