Geodo Tracker - About

Contact: gtrack ☺
This site was created as weekend project to serve as a tracker for C&C sites of Geodo family and a platform to catalogize corpus of related malware.
Please sponsor so they can continue the great work with the cuckoo platform.
Credits go also to Virus Total and Team Cymru - #Totalhash' for providing research platforms and SpamHaus for sharing the word.

If you like the stuff you can sponsor the host by using my Digital Ocean referal link and get 10$ as a bonus ;).

Information published here can be freely used/modified/re-distributed.
In no way I deem myself responsible for this information to be complete or 100% accurate.

For automation you can use these feeds: - new samples discovered in last 24h - all download links - active download links to ZIP files in a format present in the phishing + EXE updates of the 1st stage downloader - expanded active download links including the filenames - links to download of the 2nd stage EXE - new download links for last 24 hours - links to active C2 sites - NOT WORKING - links to sites being suspected to be C2 for geodo - links to C2 sites which are down with the last scan links to all C2 sites - NOT WORKING list of active C2 sites - all C2 sites in CSV format with additional info - full info on all C2 sites in CSV format

If you like the content on this site and want to support it - use my referral for new account on and Get 10$ bonus for running your machine.