Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 110.172.180.180. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:110.172.180.180
Hostname:n/a
Status:- Online
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS18002
AS name:WORLDPHONE-IN AS Number for Interdomain Routing
Country:- IN
First seen:2020-12-22 14:55:28 UTC
Last seen:2020-12-22 18:10:42 UTC
Last online:2021-01-24

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-12-22 18:24:16c971e868028dfbb8c4ec9a044b71186dn/a110.172.180.1808080Heodo
2020-12-22 18:05:27c17b6db9b07c2617e2000d3acee498fan/a110.172.180.1808080Heodo
2020-12-22 17:49:04ae157befcc3078cb32f03c8dc55cc7c8n/a110.172.180.1808080Heodo
2020-12-22 17:47:326e5239169dd2cc4f493d7d0c66e44789n/a110.172.180.1808080Heodo
2020-12-22 17:44:15f368cbdf6a8262c7fc199c8125833e3fn/a110.172.180.1808080Heodo
2020-12-22 16:29:5102404e00e6c08789dc062ab873832864n/a110.172.180.1808080Heodo
2020-12-22 15:50:3551e2980e3dd1429088b3b46abe3c18f0n/a110.172.180.1808080Heodo
2020-12-22 15:12:0472c7b63e26f7ebe5f20af5bb7050d898n/a110.172.180.1808080Heodo

# of malware samples: 8