Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 189.149.181.61. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:189.149.181.61
Hostname:dsl-189-149-181-61-dyn.prod-infinitum.com.mx
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS8151
AS name:Uninet S.A. de C.V.
Country:- MX
First seen:2019-01-23 13:44:27 UTC
Last seen:2019-01-25 12:29:51 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-25 14:02:176920e9cada37481469643baa7005eb68Virustotal results 44/70 (62.86%) 189.149.181.61465Heodo
2019-01-25 12:39:0440df0246ad070a4acf42ac2e9645054aVirustotal results 15/71 (21.13%) 189.149.181.61465Heodo
2019-01-24 21:32:2837d31cdf54d484b9449dee586a6a46faVirustotal results 16/69 (23.19%) 189.149.181.61465Heodo
2019-01-24 19:22:06bf3ab098742ca5a4eb35b70558c7ae73Virustotal results 15/57 (26.32%) 189.149.181.61465Heodo
2019-01-24 15:59:527eb100bdb8df230a9f890d67fb69db6eVirustotal results 12/66 (18.18%) 189.149.181.61465Heodo
2019-01-24 11:46:53fd87cc896b85c05320bc6ee4e350d67fVirustotal results 24/71 (33.80%) 189.149.181.61465Heodo

# of malware samples: 6