Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 181.63.199.17. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:181.63.199.17
Hostname:dynamic-ip-1816319917.cable.net.co
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS10620
AS name:Telmex Colombia S.A.
Country:- CO
First seen:2018-11-26 20:40:29 UTC
Last seen:2019-01-08 09:31:15 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-08 22:05:584faf3756b7f9fd659dde9e9151e338bfVirustotal results 53/71 (74.65%) 181.63.199.177080Heodo
2019-01-08 14:39:54eca9632f4652709c96fc4d627c7f7848Virustotal results 48/69 (69.57%) 181.63.199.177080Heodo
2019-01-08 12:20:189f1269738813cff9599d8c2fedad735aVirustotal results 19/71 (26.76%) 181.63.199.177080Heodo
2018-12-29 09:20:41ea78c09de4d931fbb3843bf425667695Virustotal results 41/67 (61.19%) 181.63.199.177080Heodo
2018-12-29 03:00:1049dfbbba0050c73a0031a940219cf2d4Virustotal results 40/70 (57.14%) 181.63.199.177080Heodo
2018-12-29 01:08:07beebfb2f78e049846db18be6f1badbaaVirustotal results 43/70 (61.43%) 181.63.199.177080Heodo
2018-12-28 21:28:54eb8c51746c5ec3c3b95d7fb2d473fd83Virustotal results 40/69 (57.97%) 181.63.199.177080Heodo
2018-12-28 18:17:28f2c8ed997c87f794d67616614b668091Virustotal results 42/69 (60.87%) 181.63.199.177080Heodo
2018-12-28 17:38:25ebdb79d83cd4ff536de825d6534e263eVirustotal results 40/72 (55.56%) 181.63.199.177080Heodo
2018-12-28 15:29:28270474a8aec8860767cbdd92823e0faaVirustotal results 19/69 (27.54%) 181.63.199.177080Heodo
2018-12-28 14:23:23c0ba1acdadc38dec31e6f5d61b6ab287Virustotal results 40/71 (56.34%) 181.63.199.177080Heodo
2018-12-28 10:53:55e6e3a3389a3d641341a2ff298dea717bVirustotal results 40/71 (56.34%) 181.63.199.177080Heodo
2018-12-28 03:25:494926b640174ad88ca4308fef530fa3fdVirustotal results 40/71 (56.34%) 181.63.199.177080Heodo
2018-12-28 01:29:5609a049e6f235af4f8b20548e5f412b8bVirustotal results 43/70 (61.43%) 181.63.199.177080Heodo
2018-12-27 23:19:424219036ab4e60a11c2501a8a8d9c41e0Virustotal results 42/70 (60.00%) 181.63.199.177080Heodo
2018-12-27 21:53:24a6f807eeba0b8f2805350f5205cf89b6Virustotal results 36/69 (52.17%) 181.63.199.177080Heodo
2018-12-27 21:29:183b5a6de317252441d0bf0e11f7a8430dVirustotal results 40/71 (56.34%) 181.63.199.177080Heodo
2018-12-27 17:44:352ef31c0832c8e2d51f2cff79578fe6cdVirustotal results 42/70 (60.00%) 181.63.199.177080Heodo
2018-12-27 17:37:24e47543f438c5053c485bb1b88f3b1f63Virustotal results 38/70 (54.29%) 181.63.199.177080Heodo
2018-12-27 16:21:03ce85a360e7d6ee11ffaed8e0abc3c0afVirustotal results 42/70 (60.00%) 181.63.199.177080Heodo
2018-12-27 12:37:186937712c78d2083794f2b5bbd3f30a90Virustotal results 41/71 (57.75%) 181.63.199.177080Heodo
2018-12-27 10:49:15199dec6940159074c0888ff3cb246c8eVirustotal results 42/70 (60.00%) 181.63.199.177080Heodo
2018-12-27 04:23:572baecac36e6c7a5477c5fa8f2546695aVirustotal results 42/69 (60.87%) 181.63.199.177080Heodo
2018-12-26 16:13:283dc9b1361e4ef216127225afad62c93cVirustotal results 44/69 (63.77%) 181.63.199.177080Heodo
2018-12-26 15:50:55626debc94115647e495d26fb4da15034Virustotal results 14/70 (20.00%) 181.63.199.177080Heodo
2018-12-26 10:31:1934bf0cb84bad9774cbd515ab32945345Virustotal results 21/59 (35.59%) 181.63.199.177080Heodo
2018-12-26 08:47:437b74c5ee03cd7668d959e7649a7599f8Virustotal results 21/57 (36.84%) 181.63.199.177080Heodo
2018-12-25 21:16:198081d8808a24ec9dbf16095f82283d25Virustotal results 47/70 (67.14%) 181.63.199.177080Heodo
2018-12-21 10:11:025dc0894ed100766f1302c3507151ef75Virustotal results 19/70 (27.14%) 181.63.199.177080Heodo
2018-12-21 10:10:0294437c540e566f0d0a3865f6a5e262a9Virustotal results 48/69 (69.57%) 181.63.199.177080Heodo
2018-12-21 09:28:47904dea09a556c11d462cdba967936bf9Virustotal results 28/60 (46.67%) 181.63.199.177080Heodo
2018-12-21 07:05:28d6e63dd7029b348b3554d450d5303a26Virustotal results 38/68 (55.88%) 181.63.199.177080Heodo
2018-12-21 06:38:020a7924546d4dae0877302bfd8a3d9709Virustotal results 21/71 (29.58%) 181.63.199.177080Heodo

# of malware samples: 33