Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 153.204.122.254. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:153.204.122.254
Hostname:p2107254-ipbf1301souka.saitama.ocn.ne.jp
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS4713
AS name:OCN NTT Communications Corporation
Country:- JP
First seen:2020-10-29 19:14:16 UTC
Last seen:2020-11-17 15:53:10 UTC
Last online:2020-10-30

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-11-17 16:02:450b76ec1f0448190ab68e34b5290505c3n/a153.204.122.25480Heodo
2020-11-16 06:32:37a47a1fab4b6887b7d2fe07620d00ad88Virustotal results 32 / 71 (45.07%) 153.204.122.25480Heodo
2020-11-13 16:22:57233aa37ab86d33eac570aff82c8dc400n/a153.204.122.25480Heodo
2020-11-12 16:23:36f7e4f0871f8f6aaa8d795646f8f84c5en/a153.204.122.25480Heodo
2020-11-11 11:33:4654962b5efe315f58c48e2e6d0b686ef3n/a153.204.122.25480Heodo

# of malware samples: 5