Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 189.163.1.225. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:189.163.1.225
Hostname:n/a
Status:Offline
Spamhaus SBL:SBL426566
Malware:Heodo -
AS number:AS8151
AS name:Uninet S.A. de C.V.
Country:- MX
First seen:2018-12-12 16:39:15 UTC
Last seen:2018-12-13 17:54:36 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2018-12-15 22:59:2717b34a7db3c378a451e2a2d5a3eb60feVirustotal results 24/69 (34.78%) 189.163.1.225443Heodo
2018-12-13 19:18:205064f6a3a7384591153d31ba37ad17deVirustotal results 46/70 (65.71%) 189.163.1.225443Heodo
2018-12-13 19:07:40669bdd8347cdb9b25def67d7946f0b0fVirustotal results 13/69 (18.84%) 189.163.1.225443Heodo
2018-12-13 18:03:29e92fc15d8f3b256aab6f13d137250ec4Virustotal results 42/70 (60.00%) 189.163.1.225443Heodo
2018-12-13 17:51:483b67195163fff5e124ed1a827c6a1b58Virustotal results 13/66 (19.70%) 189.163.1.225443Heodo

# of malware samples: 5