Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 181.168.74.104. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:181.168.74.104
Hostname:104-74-168-181.fibertel.com.ar
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS10318
AS name:CABLEVISION S.A.
Country:- AR
First seen:2018-12-19 09:47:07 UTC
Last seen:2019-02-21 00:58:15 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-12-21 09:43:22e6e0a04163216ae797b5bfc9dd14b572Virustotal results 40/59 (67.80%) 181.168.74.104993Heodo
2018-12-12 01:29:36c1dd02743f56bca2486c75cd8797a5faVirustotal results 32/58 (55.17%) 181.168.74.104993Heodo
2018-12-12 00:46:458e616586e92061ebe4571f39c1814c10Virustotal results 37/60 (61.67%) 181.168.74.104993Heodo
2018-12-11 21:33:2139c4dc52418969a25b35e131410cfb88Virustotal results 38/59 (64.41%) 181.168.74.104993Heodo

# of malware samples: 4