Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 103.61.109.13. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:103.61.109.13
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS135229
AS name:MAGICANETWORK-AS Magica Net
Country:- IN
First seen:2020-02-20 06:50:16 UTC
Last seen:2020-03-15 13:12:13 UTC
Last online:2020-03-18

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-26 18:46:32388d43258d2901189fb31fa5296688d0Virustotal results 5 / 72 (6.94%) 103.61.109.1380Heodo
2020-03-15 01:08:50bdf3ea37705558356cc9ff9cbc9df912Virustotal results 34 / 73 (46.58%) 103.61.109.1380Heodo
2020-02-27 19:16:38b04ebe3b53340e34ed8cb6de9937c9abVirustotal results 6 / 72 (8.33%) 103.61.109.1380Heodo
2020-02-23 21:39:39b6e01cac8fa0ed0684723d282ff90cf6Virustotal results 6 / 72 (8.33%) 103.61.109.1380Heodo
2020-02-20 18:21:445edc8d41c6b1ee4e3d7f7d55fdfcaffbVirustotal results 6 / 70 (8.57%) 103.61.109.1380Heodo

# of malware samples: 5