Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 139.5.101.203. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:139.5.101.203
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS58659
AS name:QCPL-IN Quest Consultancy Pvt Ltd
Country:- IN
First seen:2020-12-17 18:58:11 UTC
Last seen:2021-01-07 02:37:36 UTC
Last online:2021-01-23

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2021-01-07 02:57:41192bd5df827ec598974f4506272b619dn/a139.5.101.20380Heodo
2021-01-06 15:20:33d1540b55475d6933d0b4b7102d00be9en/a139.5.101.20380Heodo
2021-01-06 10:39:257242cf2c95d61c7f2655a29bb50fe81fn/a139.5.101.20380Heodo
2020-12-26 01:35:33aecfc3b78a1665115eb0b884daf45cebVirustotal results 35 / 69 (50.72%) 139.5.101.20380Heodo
2020-12-25 19:23:4529191efba92076c43806a65ab51c0f7cVirustotal results 34 / 68 (50.00%) 139.5.101.20380
2020-12-20 19:31:4146045a93642b60ebfc2f26cebc28ffbcn/a139.5.101.20380Heodo

# of malware samples: 6