Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 201.137.254.209. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:201.137.254.209
Hostname:dsl-201-137-254-209-dyn.prod-infinitum.com.mx
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS8151
AS name:Uninet S.A. de C.V.
Country:- MX
First seen:2019-02-26 14:07:39 UTC
Last seen:2019-02-26 16:13:54 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-02-26 16:28:0504c49b54ff9029af84b1a8c62d34e9a8Virustotal results 13/56 (23.21%) 201.137.254.209465Heodo
2019-02-26 16:26:175cdfd7f0918cc6b4943ac45b5c65e2a0Virustotal results 10/58 (17.24%) 201.137.254.209465Heodo
2019-02-26 16:05:1490f9569514668982510d02c561dfd056Virustotal results 27/53 (50.94%) 201.137.254.209465Heodo
2019-02-26 16:01:1496795a5ff05edc576a131163079063d7Virustotal results 10/56 (17.86%) 201.137.254.209465Heodo
2019-02-26 14:45:47caba54b0049df27195cfc0b17ea43656Virustotal results 22/54 (40.74%) 201.137.254.209465Heodo
2019-02-26 14:37:44dbaa235b2640cd860624c81822656002Virustotal results 22/52 (42.31%) 201.137.254.209465Heodo
2019-02-26 14:29:358948a89904d4477232a3baba747dc763Virustotal results 25/56 (44.64%) 201.137.254.209465Heodo

# of malware samples: 7