Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 162.251.81.235. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:162.251.81.235
Hostname:x1.totalwebsmedia.com
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS394695
AS name:PUBLIC-DOMAIN-REGISTRY - PDR
Country:- VG
First seen:2018-04-01 07:36:50 UTC
Last seen:2019-02-01 06:49:33 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-02-02 15:42:57a30183350215d9bc1be820f645923c2eVirustotal results 54/71 (76.06%) 162.251.81.2358080Heodo
2019-02-02 12:23:54a42399c1bca228a7e9b829a67d2daae2Virustotal results 55/71 (77.46%) 162.251.81.2358080Heodo
2019-01-08 16:45:08c992becef747566d084fd5a526c54810Virustotal results 52/68 (76.47%) 162.251.81.2358080Heodo
2019-01-08 14:58:419c8251cce6bf2d39dfdb123da0849e8aVirustotal results 56/67 (83.58%) 162.251.81.2358080Heodo
2019-01-08 14:40:39210acd00ee7dbd9892e5ca3c6a630334Virustotal results 47/68 (69.12%) 162.251.81.2358080Heodo
2019-01-08 09:37:55aede0078e3504fccad3199ad3d147159Virustotal results 45/67 (67.16%) 162.251.81.2358080Heodo
2018-11-24 16:31:33a2b20d0c0f534966518a453a63568c0aVirustotal results 45/69 (65.22%) 162.251.81.2358080Heodo
2018-11-19 16:46:36a276bb71882899af4b81700e1e70f5fcVirustotal results 48/67 (71.64%) 162.251.81.2358080Heodo
2018-11-05 19:57:41a0f2571db0ade710ac6d1e72ac2211e5Virustotal results 34/68 (50.00%) 162.251.81.2358080Heodo

# of malware samples: 9