Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 120.151.13.225. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:120.151.13.225
Hostname:pharma26.lnk.telstra.net
Status:Offline
Spamhaus SBL:SBL426611
Malware:Heodo -
AS number:AS1221
AS name:ASN-TELSTRA Telstra Corporation Ltd
Country:- AU
First seen:2018-12-05 08:06:14 UTC
Last seen:2019-01-08 09:28:15 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-09 01:33:49163a0117f50584a434852e1e8da9af34Virustotal results 51/70 (72.86%) 120.151.13.225443Heodo
2019-01-09 00:37:50b7eb9ca11ce212beff0653b2d5d8d107Virustotal results 45/69 (65.22%) 120.151.13.225443Heodo
2019-01-08 12:53:24e1aa639469f729a18e76b8751c3ed556Virustotal results 47/69 (68.12%) 120.151.13.225443Heodo
2018-12-23 13:02:57827f524af5c5a22ea984a95313e0ceb8Virustotal results 13/60 (21.67%) 120.151.13.225443Heodo
2018-12-23 13:01:238c296d3d812a6f2bf61ae9680ffe4df9Virustotal results 28/59 (47.46%) 120.151.13.225443Heodo
2018-12-23 12:51:2808da3f4647515aacc49f3acf9ef13a46Virustotal results 13/58 (22.41%) 120.151.13.225443Heodo
2018-12-23 12:20:20c97d2e9e8a76637f0343be9dfb6357c3Virustotal results 31/60 (51.67%) 120.151.13.225443Heodo
2018-12-23 11:43:45247dba5046308a65a478427d24aaacecVirustotal results 13/59 (22.03%) 120.151.13.225443Heodo
2018-12-23 11:41:27c8f73380c2109da4b3d4af6eeb667871Virustotal results 39/60 (65.00%) 120.151.13.225443Heodo
2018-12-23 11:28:40ce9092ae70fbd72ada4dd116216d2131Virustotal results 31/60 (51.67%) 120.151.13.225443Heodo
2018-12-23 11:19:448b1043b49a8325148a8264164638ed68Virustotal results 26/59 (44.07%) 120.151.13.225443Heodo
2018-12-23 11:17:462055fb052de331f549872d9d4da1db24Virustotal results 13/58 (22.41%) 120.151.13.225443Heodo
2018-12-23 11:09:34b614af4245771a52717e2802ed3c96c4Virustotal results 13/58 (22.41%) 120.151.13.225443Heodo
2018-12-23 10:38:31d9291cdbe278c2be6c4efd5d026c39cdVirustotal results 28/60 (46.67%) 120.151.13.225443Heodo
2018-12-23 10:32:55fa76524d2b2bf04e6582fa73fbb4f625Virustotal results 13/60 (21.67%) 120.151.13.225443Heodo
2018-12-23 09:42:08bac44978dc09e2419aae64d12a2cf36fVirustotal results 13/60 (21.67%) 120.151.13.225443Heodo
2018-12-08 19:32:44b70716a2e61559450dc7236438fccfb5Virustotal results 25/60 (41.67%) 120.151.13.225443Heodo
2018-12-08 19:30:0050f48e3907bf2fad6cb2a812318f7eaaVirustotal results 13/58 (22.41%) 120.151.13.225443Heodo
2018-12-07 10:27:514d47b9b825c6c07f1b5efe03618d89d3Virustotal results 48/70 (68.57%) 120.151.13.225443Heodo
2018-12-07 07:36:5528a96563f2f7ac5839a1103823a6f926Virustotal results 16/70 (22.86%) 120.151.13.225443Heodo
2018-12-07 04:26:20d622e58d8d0f7f42c9d08cb47634a5cbVirustotal results 31/60 (51.67%) 120.151.13.225443Heodo
2018-12-07 01:52:38f8db7b605a60fb1d4d228d9f45eac791Virustotal results 18/70 (25.71%) 120.151.13.225443Heodo

# of malware samples: 22