Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 102.182.145.130. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:102.182.145.130
Hostname:102-182-145-130.ip.afrihost.joburg
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS37611
AS name:Afrihost
Country:- ZA
First seen:2020-02-28 15:24:15 UTC
Last seen:2020-04-14 19:54:59 UTC
Last online:2020-03-30

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-04-16 10:11:32ad637618cf7103dd16ca68d93a3e3365Virustotal results 42 / 71 (59.15%) 102.182.145.13080Heodo
2020-04-14 17:06:3872ed47614549dc303f5e748480095526Virustotal results 40 / 71 (56.34%) 102.182.145.13080Heodo
2020-03-26 18:09:520fb56d8dedea9491d13ad54153ba9e34n/a102.182.145.13080Heodo
2020-03-25 22:33:1736ed9437ae80079284518396ed377445n/a102.182.145.13080Heodo
2020-03-22 00:44:40a4708e15384ef20b7f3ba8a3c892df1cVirustotal results 26 / 73 (35.62%) 102.182.145.13080Heodo
2020-03-18 04:12:220d3170dd9e41b8e26fb186c67e941637n/a102.182.145.13080Heodo
2020-03-18 04:06:2497eb1d298782cfde5eaa2cae138e69d3n/a102.182.145.13080Heodo
2020-03-11 21:11:35164d9c0892f989706764a1907970f096Virustotal results 27 / 72 (37.50%) 102.182.145.13080Heodo
2020-03-09 23:01:4848f9f619ef477c170c72c15c4b1f3d81Virustotal results 33 / 71 (46.48%) 102.182.145.13080Heodo

# of malware samples: 9