Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 200.114.167.85. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:200.114.167.85
Hostname:85-167-114-200.fibertel.com.ar
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS10318
AS name:Telecom Argentina S.A.
Country:- AR
First seen:2019-12-19 21:07:57 UTC
Last seen:2019-12-23 12:29:42 UTC
Last online:2019-12-29

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-12-23 12:39:15c6f2935e1b62a2b3c31c0b3fd3ded41fVirustotal results 6 / 68 (8.82%) 200.114.167.8580Heodo
2019-12-21 11:08:0068de8540a8fb2f382006b20031d4da45Virustotal results 7 / 71 (9.86%) 200.114.167.8580Heodo
2019-12-20 08:23:1125aebe5ae05a7389ef274989c4127aebVirustotal results 7 / 73 (9.59%) 200.114.167.8580Heodo
2019-12-20 08:15:39efe192fa29b16d024f5a8897ece2e90cVirustotal results 7 / 73 (9.59%) 200.114.167.8580Heodo
2019-12-20 08:13:099adce48d86b54f099ccedf7d0e05151bVirustotal results 20 / 69 (28.99%) 200.114.167.8580Heodo
2019-12-20 07:58:450dc047f615320bd9c3e9089633980cbcVirustotal results 8 / 72 (11.11%) 200.114.167.8580Heodo
2019-12-20 07:43:0235e5589ecac7818a63b503db0fdd114bVirustotal results 6 / 72 (8.33%) 200.114.167.8580Heodo
2019-12-19 23:34:3001877555ff0535bf295525f568de6855Virustotal results 18 / 61 (29.51%) 200.114.167.8580Heodo
2019-12-19 23:29:554ff75b3c02d527b12dc9cfce82a78cedVirustotal results 18 / 62 (29.03%) 200.114.167.8580Heodo
2019-12-19 23:23:07ada2888a2eb5bd0a8f42b2b4c80bec46Virustotal results 16 / 61 (26.23%) 200.114.167.8580Heodo

# of malware samples: 10