Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 109.101.137.162. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:109.101.137.162
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS9050
AS name:RTD Bucharest, Romania
Country:- RO
First seen:2020-10-28 09:14:32 UTC
Last seen:2020-10-29 18:57:17 UTC
Last online:2020-11-16

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-11-01 13:28:16f22caa1855f16ca2018862015d836952Virustotal results 35 / 71 (49.30%) 109.101.137.1628080Heodo
2020-11-01 08:14:09afa1f6af2e3f94927741eab22ab25752Virustotal results 33 / 68 (48.53%) 109.101.137.1628080Heodo
2020-11-01 07:07:32a19b9445f4403a1f6f21a1f1aedcb024Virustotal results 8 / 71 (11.27%) 109.101.137.1628080Heodo
2020-11-01 02:10:2361513622ee333a831c1280f9507e419cVirustotal results 28 / 60 (46.67%) 109.101.137.1628080Heodo
2020-11-01 01:43:255a806a283b1dc483204204722f9e4993Virustotal results 36 / 71 (50.70%) 109.101.137.1628080Heodo
2020-11-01 00:52:025051b74e53a77447d5dd766bebc0ab90Virustotal results 38 / 71 (53.52%) 109.101.137.1628080TrickBot
2020-10-31 14:22:38e0e72dbe9aa024bd602d7df4978aa5b8Virustotal results 11 / 68 (16.18%) 109.101.137.1628080Heodo
2020-10-31 12:25:04d06f30379000f8c116855377c8d09a50n/a109.101.137.1628080Heodo
2020-10-31 10:52:58c44939f5b3a0581e812e9b1f7be12567n/a109.101.137.1628080Heodo
2020-10-31 08:44:03b18b02d651cc233677789e0f82a31539n/a109.101.137.1628080Heodo
2020-10-31 06:47:36a0c39b5e10f5ab18a0866a1b42b4dafdn/a109.101.137.1628080Heodo
2020-10-31 06:45:53a0b21977565b7f56daa7bdcf0d4108edVirustotal results 12 / 70 (17.14%) 109.101.137.1628080Heodo
2020-10-31 06:26:329df372bc3d2584722213ad34502374d4n/a109.101.137.1628080Heodo
2020-10-31 06:07:359abef0819d69a5fcceb380447eb4e16an/a109.101.137.1628080Heodo
2020-10-30 17:22:497e191c8cb0335a0a54a6d790bb639875n/a109.101.137.1628080Heodo
2020-10-30 16:07:307162e238ae2f90a8049cff8d164f554an/a109.101.137.1628080Heodo
2020-10-30 15:14:28528c43c4cd2f4d554655f5d5ead9bd55Virustotal results 14 / 70 (20.00%) 109.101.137.1628080Heodo
2020-10-30 13:43:29691f46b64947c3ea4d1cabd636a77e0an/a109.101.137.1628080Heodo
2020-10-30 13:42:4869b0501618297efcae1f65e5ce9ad613n/a109.101.137.1628080Heodo
2020-10-30 13:17:3964e84b73fc5fbe2a3a90edc986a2e151n/a109.101.137.1628080Heodo
2020-10-30 12:54:0061f9de40ec06cef60db65909c70e57f4n/a109.101.137.1628080Heodo
2020-10-30 12:39:285f4f7f9082afa3ed2a027f8253516320Virustotal results 13 / 70 (18.57%) 109.101.137.1628080Heodo
2020-10-30 11:52:2755b10d4c77ca310dbcb19c5210910a21n/a109.101.137.1628080Heodo
2020-10-30 11:49:2156a5712e9e0d694ee8e1053aa1750e23n/a109.101.137.1628080Heodo
2020-10-30 11:15:21504f9e9b4d5d6874db4069f97465f7efn/a109.101.137.1628080Heodo
2020-10-30 10:47:3449c873647936948bcabcc61d1c536417n/a109.101.137.1628080Heodo
2020-10-30 10:24:04457cfc9191e6c518102be4c84f23fdban/a109.101.137.1628080Heodo
2020-10-30 09:17:303ad32bd378b1c637695c5657f1f3a27bn/a109.101.137.1628080Heodo
2020-10-30 09:11:04378c42e12ba0738207897314ea4b010cn/a109.101.137.1628080Heodo
2020-10-30 08:23:34307ef4f393cb73c72820dfbc8214e0f3Virustotal results 12 / 69 (17.39%) 109.101.137.1628080Heodo
2020-10-30 08:23:2530a1579a5e03b4d78d9e556ea9692001Virustotal results 11 / 65 (16.92%) 109.101.137.1628080Heodo
2020-10-30 07:50:0729a0e15248b92be7991dfdc9692b2a7en/a109.101.137.1628080Heodo
2020-10-30 06:23:441fe6124b5d621c96fdaede70b20f48e6Virustotal results 27 / 70 (38.57%) 109.101.137.1628080Heodo
2020-10-30 05:28:121339c0c351d61090460c59bdf7438f87n/a109.101.137.1628080Heodo
2020-10-30 05:05:300c0647dadea3e525fb3fe6c1a456fcc6Virustotal results 11 / 70 (15.71%) 109.101.137.1628080Heodo
2020-10-30 04:51:43085c21dae59cbe284b3927fb6c96d97cn/a109.101.137.1628080Heodo
2020-10-30 04:38:4505582a1916530d8cba7c8f92a817a040n/a109.101.137.1628080Heodo
2020-10-28 13:36:01918286760e6217519af23d2428c3e726n/a109.101.137.1628080Heodo
2020-10-28 13:32:459f23aad0b863f44af5373ea94e88abb4n/a109.101.137.1628080Heodo
2020-10-28 13:29:5526b0dc0201f10ece3d6f3d4af8df7d1an/a109.101.137.1628080Heodo
2020-10-28 13:27:0318b36272e9160e76f364c4b0567ec447n/a109.101.137.1628080Heodo
2020-10-28 13:25:2142c21656abb4e44b6c949022ee5ff472n/a109.101.137.1628080Heodo
2020-10-28 13:22:46fa408108451eef47029395aa6869ef50n/a109.101.137.1628080Heodo
2020-10-28 13:17:19f3ecec5fb0cd31197f1f68ff6d8be733Virustotal results 8 / 68 (11.76%) 109.101.137.1628080Heodo
2020-10-28 13:15:07c375a4046474c55f4e196142d4ee27bbn/a109.101.137.1628080Heodo
2020-10-28 13:04:51c6f05ab75dbc3b07fade3be934a22d74n/a109.101.137.1628080Heodo
2020-10-28 13:02:37eac90cd3eb951bb3df56ab05a3c06af8Virustotal results 8 / 67 (11.94%) 109.101.137.1628080Heodo
2020-10-28 13:00:52a7ab6fd279fbfca438451263cbaf40ben/a109.101.137.1628080Heodo
2020-10-28 12:58:35968188fa7c5990c514dc4e727fb40481n/a109.101.137.1628080Heodo
2020-10-28 12:55:01ab1f722e88e0ca2fc0d091d9fd74f34fn/a109.101.137.1628080Heodo
2020-10-28 12:41:457f13878b975825b3b1c274ef7ec55ecan/a109.101.137.1628080Heodo
2020-10-28 12:32:154ff0d9f52e874838d3f73bb7f1670923n/a109.101.137.1628080Heodo
2020-10-28 12:31:04d099e38a21e3e2f250afb9b85adf4a7cn/a109.101.137.1628080Heodo
2020-10-28 12:21:54a553e0cef70b13a7b5f56ce6ed9940een/a109.101.137.1628080Heodo
2020-10-28 12:10:14e97f745448b69694abb752beed023b87n/a109.101.137.1628080Heodo
2020-10-28 12:07:240e0c0ee3094b482faee61d45522094e3n/a109.101.137.1628080Heodo
2020-10-28 12:05:311d45a20f0730d78388d32ce44abfda6cn/a109.101.137.1628080Heodo
2020-10-28 12:00:0565a1edbb9cebf2eb666d8441c88a0853n/a109.101.137.1628080Heodo
2020-10-28 11:59:28dc20bee8caeb22022811b3e5fac0a9fbn/a109.101.137.1628080Heodo
2020-10-28 11:57:541b7406b9d946e711b0400d0ee035a197n/a109.101.137.1628080Heodo
2020-10-28 11:57:408b0f44126ec112fe38fb277b0f38839fn/a109.101.137.1628080Heodo
2020-10-28 11:32:215dfa2e30a9d512db637cb658cbb26246n/a109.101.137.1628080Heodo
2020-10-28 11:30:3309daf9da9e29d55dfe89eedc02a603a0n/a109.101.137.1628080Heodo
2020-10-28 11:28:59e8f08f1e591e3124a17e1206c5bbcd17n/a109.101.137.1628080Heodo
2020-10-28 11:28:1771c93da02db102c17ea36616ac484892n/a109.101.137.1628080Heodo
2020-10-28 11:27:3608fc8df7ab00d83e1ff61d9d17915967n/a109.101.137.1628080Heodo
2020-10-28 11:27:26717561e59fee178a218bece29cb99f98Virustotal results 8 / 70 (11.43%) 109.101.137.1628080Heodo
2020-10-28 11:22:27419473eaf3dd52dd1559f995e794ef24n/a109.101.137.1628080Heodo
2020-10-28 11:18:06b9187d385e2d50c02606806243c91780n/a109.101.137.1628080Heodo
2020-10-28 11:14:5506113026c4b307d42f92a72a8b7e78ddn/a109.101.137.1628080Heodo
2020-10-28 11:13:17f4e1985c2152bbde01961200de620688n/a109.101.137.1628080Heodo
2020-10-28 10:57:355ee690301a5c4933d5c04f67d799c90cVirustotal results 7 / 71 (9.86%) 109.101.137.1628080Heodo
2020-10-28 10:56:56d78a8777ee7b55e1d52b36282858c4bfn/a109.101.137.1628080Heodo
2020-10-28 10:50:49cef7bc374c7d4fa5d0182a64695c5876n/a109.101.137.1628080Heodo
2020-10-28 10:47:1627745f4c98f0424c5f30c62c5a385b2bn/a109.101.137.1628080Heodo
2020-10-28 10:35:31856091d1380b78b10cc99a049ad0aab2n/a109.101.137.1628080Heodo
2020-10-28 10:29:409e6e51b20da0666ec2cedb6108c792dan/a109.101.137.1628080Heodo
2020-10-28 10:29:1901f0d8ef9674aac0777003c256a391e8n/a109.101.137.1628080Heodo
2020-10-28 10:24:58a6967ed8c80554da9c5b8a354ceeaf53n/a109.101.137.1628080Heodo
2020-10-28 10:20:15e6b0c8f9d711b2f06608d0641a31778fn/a109.101.137.1628080Heodo
2020-10-28 10:19:599c3fff66db7bca5de1f95e2023b6f121n/a109.101.137.1628080Heodo
2020-10-28 10:18:5962ab5cec8dec679434aea4f441ada18an/a109.101.137.1628080Heodo
2020-10-28 10:16:08c87e8c8efb6608460a67b8bef3b6dc41Virustotal results 7 / 70 (10.00%) 109.101.137.1628080Heodo
2020-10-28 10:10:24c43cdfdf501c3c8e1109816d4565399bn/a109.101.137.1628080Heodo
2020-10-28 10:08:247875e7f08d67a6de8a39f7306489ed51n/a109.101.137.1628080Heodo
2020-10-28 10:07:1181f9ad8a5b344a6adacf9c368b8e7f97n/a109.101.137.1628080Heodo
2020-10-28 10:01:514ac653649d86a9c70040140a2df7a2aen/a109.101.137.1628080Heodo
2020-10-28 09:57:54449149d1ee057e3c4f45eece05975658n/a109.101.137.1628080Heodo
2020-10-28 09:56:274b1a4963bfc93ee73198d1742cf8e25fn/a109.101.137.1628080Heodo
2020-10-28 09:55:31b86902dcbe4db006089498fbabdb28cdn/a109.101.137.1628080Heodo
2020-10-28 09:54:10281876cd3e42cebc64dab4f9d936125fVirustotal results 7 / 70 (10.00%) 109.101.137.1628080Heodo
2020-10-28 09:51:19a01fcb062d2a9027bc926c6eb110b449Virustotal results 7 / 71 (9.86%) 109.101.137.1628080Heodo
2020-10-28 09:46:27bac4f71bec6376734e44662129e36399n/a109.101.137.1628080Heodo
2020-10-28 09:45:145dc34f88fced92854b59d96a4a0d829en/a109.101.137.1628080Heodo
2020-10-28 09:41:0937706457f8481c2d0e1f6459722c0fabn/a109.101.137.1628080Heodo
2020-10-28 09:36:599e656e2be74034387685e5f7cdd08a67n/a109.101.137.1628080Heodo
2020-10-28 09:32:382362c2f84ed057733c59d8343f055141n/a109.101.137.1628080Heodo
2020-10-28 09:29:48a9cf260260a1027d0e1e2261cf379f8aVirustotal results 7 / 71 (9.86%) 109.101.137.1628080Heodo

# of malware samples: 98