Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 189.168.169.129. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:189.168.169.129
Hostname:dsl-189-168-169-129-dyn.prod-infinitum.com.mx
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS8151
AS name:Uninet S.A. de C.V.
Country:- MX
First seen:2020-03-16 12:28:09 UTC
Last seen:2020-03-25 16:41:39 UTC
Last online:2020-03-23

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-03-26 18:09:520fb56d8dedea9491d13ad54153ba9e34n/a189.168.169.12980Heodo
2020-03-25 22:33:1736ed9437ae80079284518396ed377445n/a189.168.169.12980Heodo
2020-03-25 11:37:27fdfe2467ceedbb43154a36cd965146fcn/a189.168.169.12980Heodo
2020-03-20 06:57:44667a024a0fc74c748c4a6624a5e256e4n/a189.168.169.12980Heodo
2020-03-20 06:44:02bbb8a33c4f1602d27e9a722b6bd154aen/a189.168.169.12980Heodo
2020-03-20 06:44:02bbb8a33c4f1602d27e9a722b6bd154aen/a189.168.169.12980Heodo
2020-03-18 22:49:07ce576b1a87f3eb8f63a15b2445e696d4Virustotal results 20 / 72 (27.78%) 189.168.169.12980Heodo
2020-03-17 22:45:26aa4a67e2fbf080715c78e3b574cf4746Virustotal results 12 / 73 (16.44%) 189.168.169.12980Heodo
2020-03-17 18:45:393304335f8dec13f6274ad8a8d75d4a1an/a189.168.169.12980Heodo
2020-03-17 00:09:18b092802406cd48efbd027cda58dd4767Virustotal results 40 / 72 (55.56%) 189.168.169.12980Heodo
2020-03-16 12:40:28f03dcf1ad95e93fd1eb8f20c54ecc283n/a189.168.169.12980Heodo
2020-03-16 12:36:38122398eef7a5297f99d14c38dc0fa14an/a189.168.169.12980Heodo

# of malware samples: 12