Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 118.32.221.23. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:118.32.221.23
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS4766
AS name:KIXS-AS-KR Korea Telecom
Country:- KR
First seen:2019-03-05 16:02:08 UTC
Last seen:2019-03-08 02:45:14 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-03-08 14:46:01d89bbcc3c832689eb43cc42ea218f3d6Virustotal results 42/65 (64.62%) 118.32.221.23443Heodo
2019-03-06 18:36:549f154217d027235df6832071c2e01519Virustotal results 11/68 (16.18%) 118.32.221.23443Heodo
2019-03-06 18:36:458cf8aef87f6b7d6b742b38328d2e48ddVirustotal results 11/66 (16.67%) 118.32.221.23443Heodo
2019-03-06 17:16:173defcb1aeffc8b9ceb9d6c2c59d5b97fVirustotal results 14/66 (21.21%) 118.32.221.23443Heodo
2019-03-06 01:35:59f63cf59e57b0e409ce9ae76ec0c1d710Virustotal results 35/64 (54.69%) 118.32.221.23443Heodo
2019-03-06 00:30:462539ea956861e815d0549357fd17e5b0Virustotal results 10/67 (14.93%) 118.32.221.23443Heodo
2019-03-06 00:17:350d8bbf243b3cfac8a174726b0c125f70Virustotal results 12/71 (16.90%) 118.32.221.23443Heodo

# of malware samples: 7