Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 85.104.56.247. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:85.104.56.247
Hostname:85.104.56.247.dynamic.ttnet.com.tr
Status:Offline
Spamhaus SBL:SBL426786
Malware:Heodo -
AS number:AS9121
AS name:TTNET
Country:- TR
First seen:2018-10-04 16:14:43 UTC
Last seen:2019-01-09 14:12:13 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-09 05:32:1660248f127e1080d29817cf0e34846d80Virustotal results 47/69 (68.12%) 85.104.56.2478080Heodo
2018-10-05 08:10:238d7b1b5a7ed23fc69fe2133874fc1b7cVirustotal results 21/67 (31.34%) 85.104.56.2478080Heodo
2018-10-04 21:25:14b523acc5da1636551efdbdbca0cbd213Virustotal results 20/67 (29.85%) 85.104.56.2478080Heodo
2018-10-04 16:07:440bfc196e11bae5f9d4b37c4723040e08Virustotal results 16/69 (23.19%) 85.104.56.2478080Heodo

# of malware samples: 4