Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 162.255.112.157. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:162.255.112.157
Hostname:pool-162-255-112-157.user.start.ca
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS40788
AS name:START-
Country:- CA
First seen:2020-02-17 10:58:23 UTC
Last seen:2020-03-25 16:41:39 UTC
Last online:2020-03-05

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-25 22:33:1736ed9437ae80079284518396ed377445n/a162.255.112.157443Heodo
2020-03-14 09:29:3205483a48ed4bbb7956049d3e04a76c8bVirustotal results 36 / 72 (50.00%) 162.255.112.157443Heodo
2020-03-11 21:11:35164d9c0892f989706764a1907970f096Virustotal results 27 / 72 (37.50%) 162.255.112.157443Heodo
2020-03-04 18:48:40d6e466733070f9a5b1d6d2b1a3da17d6Virustotal results 45 / 71 (63.38%) 162.255.112.157443Heodo
2020-02-27 20:29:181473c2bccfafd315ae9565c3b0137296Virustotal results 41 / 73 (56.16%) 162.255.112.157443Heodo
2020-02-27 19:10:215d226b7a6caa9278de5ff827f59ab3d2Virustotal results 45 / 72 (62.50%) 162.255.112.157443Heodo
2020-02-21 05:53:59a8e70acb74b8ee44f027e79ecd284cedVirustotal results 15 / 73 (20.55%) 162.255.112.157443Heodo

# of malware samples: 7