Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 200.23.18.172. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:200.23.18.172
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS11172
AS name:Alestra, S. de R.L. de C.V.
Country:- MX
First seen:2018-11-29 11:50:32 UTC
Last seen:2018-12-02 12:44:13 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-09 02:04:26bb667a2468c245c4e8566e7df49546d8Virustotal results 44/71 (61.97%) 200.23.18.172990Heodo
2018-12-02 12:37:1509784aa61e34d42cf79ea21149bc1864Virustotal results 16/70 (22.86%) 200.23.18.172990Heodo
2018-12-01 06:49:061a380505b309553f95be5964f81ac25bVirustotal results 14/69 (20.29%) 200.23.18.172990Heodo
2018-11-30 12:10:32d97e0d98f27f3ad2dbed7f1c031b4de5Virustotal results 21/69 (30.43%) 200.23.18.172990Heodo
2018-11-30 09:44:364105df01c8246fcc97c19f7bfbc5a67aVirustotal results 16/68 (23.53%) 200.23.18.172990Heodo
2018-11-30 09:31:38ac0f4469e7381eb2b754001a79ebb081Virustotal results 19/70 (27.14%) 200.23.18.172990Heodo
2018-11-29 22:09:3974a5e318aedbe5bc0cee655abf8ff565Virustotal results 13/70 (18.57%) 200.23.18.172990Heodo
2018-11-29 16:20:30fead887648bddd70a05cf7a7090411ddVirustotal results 19/69 (27.54%) 200.23.18.172990Heodo
2018-11-29 15:45:39e82544f212e3cc7a9667918dc40ce32eVirustotal results 16/70 (22.86%) 200.23.18.172990Heodo
2018-11-29 14:21:0648354e62c57314919e6e247389ac8e9cVirustotal results 18/70 (25.71%) 200.23.18.172990Heodo
2018-11-29 13:52:47a3f8eac580d0d483b197c34ea845cf2cVirustotal results 15/69 (21.74%) 200.23.18.172990Heodo
2018-11-29 11:39:4631980be51f4ff5ea31080aa2f6d0f083Virustotal results 16/68 (23.53%) 200.23.18.172990Heodo

# of malware samples: 12