Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 175.139.209.3. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:175.139.209.3
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS4788
AS name:TMNET-AS-AP TM Net, Internet Service Provider
Country:- MY
First seen:2020-01-27 17:20:18 UTC
Last seen:2020-02-01 11:26:56 UTC
Last online:2020-02-17

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-02-01 15:30:435836e547cdf0ebea8995eeb2e11426e1Virustotal results 42 / 72 (58.33%) 175.139.209.38080Heodo
2020-02-01 13:13:161e8ffbe8a58963b93973c40b127e3cecVirustotal results 45 / 71 (63.38%) 175.139.209.38080Heodo
2020-02-01 11:44:113f2870a2a1aa1a8378e79f02ab9ccd5eVirustotal results 44 / 73 (60.27%) 175.139.209.38080Heodo
2020-02-01 04:12:27a069fec1d877ba4953be4846ada2779bVirustotal results 36 / 71 (50.70%) 175.139.209.38080Heodo
2020-01-31 23:50:53bb3fa781955dca515c84d1d21e862a76Virustotal results 10 / 70 (14.29%) 175.139.209.38080Heodo
2020-01-31 19:03:27bc0a833a2aa733d366bf6c56a94ee75eVirustotal results 50 / 72 (69.44%) 175.139.209.38080Heodo
2020-01-31 15:37:08a369a5fe2811121c56bc8de74353a840Virustotal results 29 / 71 (40.85%) 175.139.209.38080Heodo
2020-01-29 22:43:30bc0436e3e4a9b13a995da6be0a301874Virustotal results 9 / 71 (12.68%) 175.139.209.38080Heodo
2020-01-28 08:03:382267ce767d6425a25e443e708c6b252cVirustotal results 15 / 70 (21.43%) 175.139.209.38080Heodo
2020-01-28 07:44:44dc5705b08e090143dd43f79ff049210fVirustotal results 15 / 73 (20.55%) 175.139.209.38080Heodo
2020-01-27 23:30:18ccd70d32ddb1750180e17a26e6c28fb7Virustotal results 16 / 64 (25.00%) 175.139.209.38080Heodo
2020-01-27 22:18:499c55234cd654f0894cd134e340f85bffVirustotal results 15 / 60 (25.00%) 175.139.209.38080Heodo

# of malware samples: 12