Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 197.90.159.42. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:197.90.159.42
Hostname:197-90-159-42.hff.mweb.co.za
Status:- Online
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS10474
AS name:OPTINET
Country:- ZA
First seen:2019-11-29 07:46:25 UTC
Last seen:2019-12-02 09:44:33 UTC
Last online:2019-12-06

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-12-02 09:51:4387a5bfeced9699c2c76410833eacb254Virustotal results 10 / 70 (14.29%) 197.90.159.4280Heodo
2019-12-02 09:14:32c5740677b09e6a7b2e7afc846e0f7261n/a197.90.159.4280Heodo
2019-12-02 09:12:07e4a30b8eeca52c507ef2bf263030875dVirustotal results 10/71 (14.08%) 197.90.159.4280Heodo
2019-12-02 09:04:17f94c2b219b5d61713b1200030ef29955Virustotal results 29/60 (48.33%) 197.90.159.4280Heodo
2019-12-02 08:54:02a898e3c1a54b5712187a3867e471428cVirustotal results 15/60 (25.00%) 197.90.159.4280Heodo
2019-12-02 08:53:068e5bab6907efc51fd8e3e5e09cbee78fVirustotal results 16/59 (27.12%) 197.90.159.4280Heodo
2019-12-02 08:28:09c5e8898092b39485d30f36189b7c4b8aVirustotal results 9 / 71 (12.68%) 197.90.159.4280Heodo
2019-12-02 06:22:3693136dc6010ae949227e3c2e4de5fc8bn/a197.90.159.4280Heodo
2019-12-02 06:04:115e5800e4661631053208a72bdce0137bn/a197.90.159.4280Heodo
2019-12-02 03:36:5747976c1d14df73bad3d1a53578dd7e39n/a197.90.159.4280Heodo
2019-12-02 00:02:58ce3d71df4c8f948754abe99d3e141291n/a197.90.159.4280Heodo
2019-12-01 23:25:050939b561a66e14b9236b7e04020561efVirustotal results 35/62 (56.45%) 197.90.159.4280Heodo
2019-12-01 20:12:003f6fb3f2ca9aa1b17d35a27f70c8c61aVirustotal results 22 / 58 (37.93%) 197.90.159.4280Heodo
2019-12-01 19:49:4213d10ed3f0d643faa24da430ab90da56Virustotal results 24 / 59 (40.68%) 197.90.159.4280Heodo
2019-12-01 19:18:010bab57ec267eed880b6ed6f3bc6f2d69n/a197.90.159.4280Heodo
2019-12-01 18:02:54361a7445da0b7ca7fbc979e4763308bcVirustotal results 29 / 58 (50.00%) 197.90.159.4280Heodo
2019-12-01 17:44:05b7871e2401cbff9db99a2405f9cbc752n/a197.90.159.4280Heodo
2019-12-01 14:36:23124f83c6ef274745d4f60b1719cad37fVirustotal results 29 / 60 (48.33%) 197.90.159.4280Heodo
2019-12-01 13:55:0370ee72bbe65cd7278e0590f264227e21Virustotal results 19 / 61 (31.15%) 197.90.159.4280Heodo
2019-12-01 13:11:04b892575622b2ba68fc70d0c573d1c093Virustotal results 37/62 (59.68%) 197.90.159.4280Heodo
2019-12-01 12:47:3780c31182aa74152d54744d22b465b821Virustotal results 18 / 59 (30.51%) 197.90.159.4280Heodo
2019-12-01 11:54:2680defa376f5a94046df044e50c36b814n/a197.90.159.4280Heodo
2019-12-01 11:34:0708d07d71b98533c7189dd0f8c2fdedd9n/a197.90.159.4280Heodo
2019-12-01 11:20:011e83a67c5a3df25454bd72304c7215b4n/a197.90.159.4280Heodo
2019-12-01 10:28:47699f572719b2a37e7891f842aea1f577n/a197.90.159.4280Heodo
2019-12-01 10:12:24cb113e94ba3483b2020a86e9ed25355en/a197.90.159.4280Heodo
2019-12-01 09:52:238bce17ee6380c9005c1fd61ff4678f64n/a197.90.159.4280Heodo
2019-12-01 09:29:1484af16b414b3138e41351ebeca160a1fVirustotal results 30 / 59 (50.85%) 197.90.159.4280Heodo
2019-12-01 09:02:449d1bf9afd24fb102bbf5a0d559085c66n/a197.90.159.4280Heodo
2019-12-01 08:45:205286e064a92a30c49dfb8ddda7c17e6fVirustotal results 36/61 (59.02%) 197.90.159.4280Heodo
2019-12-01 08:09:526d644729f2a59fdf58c01dd11ca7be1cVirustotal results 28 / 61 (45.90%) 197.90.159.4280Heodo
2019-12-01 07:12:23345fdf670edd44e4febf17261bd51f5cVirustotal results 37/62 (59.68%) 197.90.159.4280Heodo
2019-12-01 04:28:510a43cdb02905c731a2198faa160a667bVirustotal results 36/61 (59.02%) 197.90.159.4280Heodo
2019-12-01 03:21:4695d107e41702619012110ffdefbe3cabn/a197.90.159.4280Heodo
2019-12-01 02:35:3475106f2b06f529cd78a99e0a9e69b4e2Virustotal results 18 / 61 (29.51%) 197.90.159.4280Heodo
2019-12-01 02:09:5434552f3c29fa1d82a5c7c4c025b6097eVirustotal results 36/61 (59.02%) 197.90.159.4280Heodo
2019-12-01 01:45:270027d16756959e69cd5acf8e51958912Virustotal results 25/43 (58.14%) 197.90.159.4280Heodo
2019-12-01 01:30:5896ce68db67b69155cd67626466314febn/a197.90.159.4280Heodo
2019-12-01 00:29:367c3eecd43be54b29495ddb9c3f6e122en/a197.90.159.4280Heodo
2019-12-01 00:24:4887c39b940ef8a90c1afcc4534d26c79cVirustotal results 13 / 69 (18.84%) 197.90.159.4280Heodo
2019-11-30 23:50:09095f920ccfd14146c58ac8360180b5ban/a197.90.159.4280Heodo
2019-11-30 23:46:01f257c12dc0515defed2adfeb22e227dcn/a197.90.159.4280Heodo
2019-11-30 22:35:093aa9e713ff06aa1863a3335f8e9b7aa9Virustotal results 17 / 60 (28.33%) 197.90.159.4280Heodo
2019-11-30 21:49:12b8bdd07609425c241fadfe1b48bd33fbn/a197.90.159.4280Heodo
2019-11-30 19:51:1252c4b79fa34573aee10f3ffae9fb25c4n/a197.90.159.4280Heodo
2019-11-30 19:30:02c1f54260b682ce062bf6a7528733f2b2Virustotal results 17 / 61 (27.87%) 197.90.159.4280Heodo
2019-11-30 18:15:1953f3feb94b44ddfbcac2519132e4a04fn/a197.90.159.4280Heodo
2019-11-30 17:30:276b0cbb79ccb599f277b56cbc5d98d45en/a197.90.159.4280Heodo
2019-11-30 17:23:37fa27d12ef72f755ac63363c72ebec5beVirustotal results 18 / 61 (29.51%) 197.90.159.4280Heodo
2019-11-30 17:09:24246debc95dc8b5dc56543865e0251e9fVirustotal results 31/60 (51.67%) 197.90.159.4280Heodo
2019-11-30 17:07:41a5a70874a6233364067fa8c6698dc7f2Virustotal results 21 / 60 (35.00%) 197.90.159.4280Heodo
2019-11-30 16:12:535e878866fb65947e1511788660497c38n/a197.90.159.4280Heodo
2019-11-30 15:39:0879945ce6dd1eeba17475cbc3e2e9e486n/a197.90.159.4280Heodo
2019-11-30 14:53:500d7539944d44bc26e2a0ee4304e7c33bn/a197.90.159.4280Heodo
2019-11-30 14:22:5428932002151389f6ddfd0569b15ecaa8Virustotal results 16 / 59 (27.12%) 197.90.159.4280Heodo
2019-11-30 13:57:45ecba9fe8485aa50ceb8489b97e79a1c4n/a197.90.159.4280Heodo
2019-11-30 13:47:3023a11fbadf311b827a38cca52502d090Virustotal results 34/61 (55.74%) 197.90.159.4280Heodo
2019-11-30 13:35:526835941256f1c30bd930f0f501dd473bVirustotal results 16 / 58 (27.59%) 197.90.159.4280Heodo
2019-11-30 13:01:57755e7c6560e8ed78549d9b1642185e70Virustotal results 31/61 (50.82%) 197.90.159.4280Heodo
2019-11-30 12:28:316b37ea3d9b3afa83b05cd447fe704f6fVirustotal results 18 / 61 (29.51%) 197.90.159.4280Heodo
2019-11-30 11:21:304c96f570417955f9af32d0cdc705af8en/a197.90.159.4280Heodo
2019-11-30 11:10:31ab1286fc351d413781a5247824b68f53n/a197.90.159.4280Heodo
2019-11-30 11:02:5616192218f6d3057cca059de864ee0bd2Virustotal results 18 / 59 (30.51%) 197.90.159.4280Heodo
2019-11-30 10:49:10bcd8ada4c3ecbd5666158909797893e8n/a197.90.159.4280Heodo
2019-11-30 10:20:39eb5cb72dc01ed6ca5f4ef7c1f245c0c3n/a197.90.159.4280Heodo
2019-11-30 10:18:19bd7b10e09937be6f6ac3c2f73a931732Virustotal results 19 / 59 (32.20%) 197.90.159.4280Heodo
2019-11-30 09:59:27adaf1782302da2d96d8f78470767256cVirustotal results 23 / 59 (38.98%) 197.90.159.4280Heodo
2019-11-30 09:46:03ea8183089f55610a6d89e585a1c186b9n/a197.90.159.4280Heodo
2019-11-30 08:15:0911c7faaf41200baccf3c735d8c495a57n/a197.90.159.4280Heodo
2019-11-30 07:45:593a9bea0028b5dd91403ac18db4d87a99n/a197.90.159.4280Heodo
2019-11-30 05:34:318760c4dc1744e93eb02e5a98b31b3eddVirustotal results 9 / 70 (12.86%) 197.90.159.4280Heodo
2019-11-30 05:28:16697b2cbc0c07e61fa9195a9904dfd727Virustotal results 18 / 61 (29.51%) 197.90.159.4280Heodo
2019-11-30 05:15:553ed048f470afe8ee62a41a41c4dd103bVirustotal results 37/60 (61.67%) 197.90.159.4280Heodo
2019-11-30 01:33:4445432466918693cec1e63a34fa4999c3Virustotal results 30 / 60 (50.00%) 197.90.159.4280Heodo
2019-11-29 21:11:56e0c97b5d27c82ba9c41ce9dc28c6720cn/a197.90.159.4280Heodo
2019-11-29 12:55:372cfbdf96e08846ad5e9ecc214527329bn/a197.90.159.4280Heodo
2019-11-29 12:55:372cfbdf96e08846ad5e9ecc214527329bn/a197.90.159.4280Heodo

# of malware samples: 77