Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 105.224.74.57. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:105.224.74.57
Hostname:105-224-74-57.north.dsl.telkomsa.net
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS37457
AS name:Telkom-Internet
Country:- ZA
First seen:2018-11-05 11:59:22 UTC
Last seen:2019-01-08 09:35:09 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-08 21:50:495cf6f6ee26cd1d28aa723fd01c084f2dVirustotal results 49/69 (71.01%) 105.224.74.5780Heodo
2019-01-08 16:36:49fc6e674fb7b15b9f5ebfdf2215b45989Virustotal results 50/69 (72.46%) 105.224.74.5780Heodo
2019-01-08 14:38:46ee3c47e91e8c5297ddc23691aba9168eVirustotal results 41/67 (61.19%) 105.224.74.5780Heodo
2019-01-08 12:35:09e4a6ac98cc7971a87a3f580449511da1Virustotal results 50/70 (71.43%) 105.224.74.5780Heodo
2019-01-08 08:00:5827a6c62b3e3b1ffc542ba9929c321453Virustotal results 45/67 (67.16%) 105.224.74.5780Heodo
2018-11-05 19:04:303a9684af3a25d085883cdc8a2735fb35Virustotal results 42/67 (62.69%) 105.224.74.5780Heodo
2018-11-05 19:04:303a9684af3a25d085883cdc8a2735fb35Virustotal results 42/67 (62.69%) 105.224.74.5780Heodo
2018-11-05 11:59:220c816b988df733630b183276afef751fVirustotal results 39/65 (60.00%) 105.224.74.5780Heodo
2018-11-05 11:59:220c816b988df733630b183276afef751fVirustotal results 39/65 (60.00%) 105.224.74.5780Heodo
2018-11-02 15:18:080a4eb05628776c7dcd03aad9b6d855fdVirustotal results 40/66 (60.61%) 105.224.74.5780Heodo
2018-11-01 12:26:49251b90c74929213d745e9c566dd591baVirustotal results 37/68 (54.41%) 105.224.74.5780Heodo

# of malware samples: 11