Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 201.130.123.206. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:201.130.123.206
Hostname:201.130.123.206.dsl.dyn.telnor.net
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS8151
AS name:Uninet S.A. de C.V.
Country:- MX
First seen:2019-01-23 13:44:31 UTC
Last seen:2019-01-25 12:29:51 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-01-25 12:39:0440df0246ad070a4acf42ac2e9645054aVirustotal results 15/71 (21.13%) 201.130.123.20680Heodo
2019-01-24 21:32:2837d31cdf54d484b9449dee586a6a46faVirustotal results 16/69 (23.19%) 201.130.123.20680Heodo
2019-01-24 19:22:06bf3ab098742ca5a4eb35b70558c7ae73Virustotal results 15/57 (26.32%) 201.130.123.20680Heodo
2019-01-24 15:59:527eb100bdb8df230a9f890d67fb69db6eVirustotal results 12/66 (18.18%) 201.130.123.20680Heodo
2019-01-24 11:46:53fd87cc896b85c05320bc6ee4e350d67fVirustotal results 24/71 (33.80%) 201.130.123.20680Heodo

# of malware samples: 5