Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 168.235.82.183. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:168.235.82.183
Hostname:n/a
Status:- Online
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS3842
AS name:RAMNODE
Country:- US
First seen:2019-12-12 21:35:42 UTC
Last seen:2020-08-14 17:39:14 UTC
Last online:2020-08-14

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-08-14 17:50:08e45c7c3a9d8d9b74cade38443600babdVirustotal results 21 / 59 (35.59%) 168.235.82.1838080Heodo
2020-08-14 17:39:5442b275c82d49ec9cd25b7564b0ffc426Virustotal results 21 / 60 (35.00%) 168.235.82.1838080Heodo
2020-08-14 17:14:33a05419f714ab5860c997daa359b4fee5n/a168.235.82.1838080Heodo
2020-08-14 17:14:33a05419f714ab5860c997daa359b4fee5n/a168.235.82.1838080Heodo
2020-08-14 17:11:4340b058d1a484eedea85b51fa74219a10n/a168.235.82.1838080Heodo
2020-08-14 17:05:261c587a4d716717601fb5b085690cc264Virustotal results 18 / 60 (30.00%) 168.235.82.1838080Heodo
2020-08-14 17:04:263e819a2ec6c6f219bf4c9a8ec4eb0df2n/a168.235.82.1838080Heodo
2020-08-14 17:02:05446d0125c688ac988467eacffe91f806n/a168.235.82.1838080Heodo
2020-08-14 16:45:120defc58167d73746b796ce6033176b09n/a168.235.82.1838080Heodo
2020-08-14 16:26:38423ed5b530281a814da26bbe734389ebn/a168.235.82.1838080Heodo
2020-08-14 16:13:374973d42fc1e6e8499c3b38acf0fd2c27n/a168.235.82.1838080Heodo
2020-08-14 15:52:4252c5112caa311164b1f2e235023cd959Virustotal results 18 / 59 (30.51%) 168.235.82.1838080Heodo
2020-08-14 15:40:4626c887a95e8fa265155d20a343f7db64n/a168.235.82.1838080Heodo
2020-08-14 15:18:017c29def6f04b4cecf5a030c052ab31een/a168.235.82.1838080Heodo
2020-08-14 15:17:54b49e1a365a2d0142b991c774003ea946n/a168.235.82.1838080Heodo
2020-08-14 15:14:33c107fd6774ccb7c5719f86e85f3a5317Virustotal results 18 / 60 (30.00%) 168.235.82.1838080Heodo
2020-08-14 15:12:329ceffe6142f1de6ed578bec3dc4043c3n/a168.235.82.1838080Heodo
2020-08-14 15:07:51defbbbb6c61e289167727129c9eeba7bn/a168.235.82.1838080Heodo
2020-08-14 15:05:549e387df7f3bf937c775ceab31efd7a94n/a168.235.82.1838080Heodo
2020-08-14 15:00:572e403667dd1b02027a217967caf0fc71n/a168.235.82.1838080Heodo
2020-08-14 14:59:45e19da0954bfe325bce14193682669663Virustotal results 18 / 61 (29.51%) 168.235.82.1838080Heodo
2020-08-14 14:59:11103e3201c91188d5abb0820ce75b4d1cn/a168.235.82.1838080Heodo
2019-12-12 21:53:01cc159460ad73626d2cf1655ec5d0e14cVirustotal results 15 / 70 (21.43%) 168.235.82.1838080TrickBot
2019-12-12 21:53:01cc159460ad73626d2cf1655ec5d0e14cVirustotal results 15 / 70 (21.43%) 168.235.82.1838080TrickBot
2019-12-12 21:53:01cc159460ad73626d2cf1655ec5d0e14cVirustotal results 15 / 70 (21.43%) 168.235.82.1838080TrickBot
2019-12-12 21:53:01cc159460ad73626d2cf1655ec5d0e14cVirustotal results 15 / 70 (21.43%) 168.235.82.1838080TrickBot

# of malware samples: 26