Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 196.6.112.70. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:196.6.112.70
Hostname:n/a
Status:- Online
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS36874
AS name:Cybersmart
Country:- ZA
First seen:2019-04-13 23:38:30 UTC
Last seen:2019-04-17 22:11:09 UTC
Last online:2019-04-24

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-04-23 18:32:56ff20a602eed2d61c44f6b6e1222460d5Virustotal results 35/70 (50.00%) 196.6.112.70443Heodo
2019-04-23 12:58:13e44d191221b37c27e34839947432b676Virustotal results 47/66 (71.21%) 196.6.112.70443Heodo
2019-04-23 06:13:321e23a1f6ff27523df185bd8c621e8c93Virustotal results 29/69 (42.03%) 196.6.112.70443Heodo
2019-04-22 13:28:425aa4b8b05952112d6d3cb8d0bc228b93Virustotal results 48/67 (71.64%) 196.6.112.70443Heodo
2019-04-21 04:28:57c99c76f33fb328dda7d740f8928761fcVirustotal results 46/67 (68.66%) 196.6.112.70443Heodo
2019-04-20 09:12:3564800da908e7a4fa94d0963e958d8f58Virustotal results 48/68 (70.59%) 196.6.112.70443Heodo
2019-04-20 08:04:07fc1db5afbcca62e78aa14ac4d2710145Virustotal results 15/68 (22.06%) 196.6.112.70443Heodo
2019-04-20 06:35:51d272bf8e500fef4adce744ab56feeed6Virustotal results 49/72 (68.06%) 196.6.112.70443Heodo
2019-04-18 23:00:51970de663c664e289b85cecc62390e507Virustotal results 44/66 (66.67%) 196.6.112.70443Heodo
2019-04-18 16:57:50f6566a49c5028ba7976cfbf5217b8195Virustotal results 49/67 (73.13%) 196.6.112.70443Heodo
2019-04-18 04:40:4684ca509fa26c7077edc7fa42550108b1Virustotal results 27/70 (38.57%) 196.6.112.70443Heodo
2019-04-16 03:56:426e626274fee3d6097c6b564b8c052548Virustotal results 19/71 (26.76%) 196.6.112.70443Heodo
2019-04-13 23:52:35cd80639cfb311f9f8badfbc20b0469abVirustotal results 22/71 (30.99%) 196.6.112.70443Heodo

# of malware samples: 13