Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 122.116.104.238. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:122.116.104.238
Hostname:122-116-104-238.HINET-IP.hinet.net
Status:Offline
Spamhaus SBL:SBL472373
Malware:Heodo -
AS number:AS3462
AS name:HINET Data Communication Business Group
Country:- TW
First seen:2019-12-27 22:04:17 UTC
Last seen:2020-02-14 09:57:18 UTC
Last online:2020-05-06

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-05-16 23:00:1475a810e739aaef6e1464b633dee7cb91n/a122.116.104.2387080Heodo
2020-05-10 07:39:203035957fdfd9efa045a66f5e40913f61n/a122.116.104.2387080Heodo
2020-05-07 22:46:3215da7867e726a4750c548ddbf6613e7cVirustotal results 12 / 73 (16.44%) 122.116.104.2387080Heodo
2020-05-06 13:10:38ddfb3dfe15e90740aedbeabb60062a7bVirustotal results 15 / 72 (20.83%) 122.116.104.2387080Heodo
2020-05-02 18:40:55337288dfdf00679882abad5d47762ebdVirustotal results 13 / 71 (18.31%) 122.116.104.2387080Heodo
2020-04-16 20:49:589f29eaa5279a8dbfa7a83774927262beVirustotal results 6 / 70 (8.57%) 122.116.104.2387080Heodo
2020-03-22 23:17:09dbb291d5dfe8ccd9044c6ac4ca63146aVirustotal results 23 / 72 (31.94%) 122.116.104.2387080Heodo
2020-03-09 09:00:3933bcb46683e3a2c64f61014b4ae8fb50n/a122.116.104.2387080Heodo
2020-02-14 10:31:42b3f5cc1c551aa202654df8f5630fdcd0n/a122.116.104.2387080Heodo
2020-02-01 02:18:42ae971992726b69c6b6fc02bf1db18b1eVirustotal results 38 / 72 (52.78%) 122.116.104.2387080Heodo
2020-01-31 17:37:344b700f417558c91b40d9e5ff2285c4d6Virustotal results 51 / 70 (72.86%) 122.116.104.2387080Heodo
2020-01-27 20:09:06827fcffe6984bf8051c701972f41dc7fn/a122.116.104.2387080Heodo

# of malware samples: 12