Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 220.128.125.18. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:220.128.125.18
Hostname:220-128-125-18.HINET-IP.hinet.net
Status:- Online
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS3462
AS name:HINET Data Communication Business Group
Country:- TW
First seen:2020-02-24 16:48:17 UTC
Last seen:2020-07-06 07:08:17 UTC
Last online:2020-07-07

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-07-06 07:53:517a8632ed5355dcfed07f3e838a3397e0Virustotal results 15 / 73 (20.55%) 220.128.125.1880Heodo
2020-06-30 07:32:16b76910688533692a2f3c4e17ebc96a91Virustotal results 46 / 71 (64.79%) 220.128.125.1880Heodo
2020-06-28 20:12:099c9ac944e4aa18cabea29a1e8a7bd3c0n/a220.128.125.1880Heodo
2020-06-28 11:06:112237a4edbe5427092ecba86a7bb17e00Virustotal results 37 / 73 (50.68%) 220.128.125.1880Heodo
2020-06-28 05:07:3411ad1cc7042850cd194f2d6f4dcc2261Virustotal results 9 / 72 (12.50%) 220.128.125.1880Heodo
2020-06-19 19:33:300b3bc4946e65eb4b6a911a28e2011baeVirustotal results 48 / 74 (64.86%) 220.128.125.1880Heodo
2020-06-17 22:27:41044e92ef7ce095d481de0f19f547aac8Virustotal results 9 / 72 (12.50%) 220.128.125.1880Heodo
2020-06-15 22:25:58021857674a9aec8ed32c626fa5543f24Virustotal results 17 / 73 (23.29%) 220.128.125.1880Heodo
2020-06-13 09:30:32536c346ce0b141d5f17039e50cd5e845Virustotal results 23 / 73 (31.51%) 220.128.125.1880Heodo
2020-06-13 00:47:05118f2ea6f32cffa12489f9ce7ca9721fVirustotal results 12 / 74 (16.22%) 220.128.125.1880Heodo
2020-06-11 19:35:19190fc0e5dc027d8ea1cc3f69a8a6c65eVirustotal results 10 / 65 (15.38%) 220.128.125.1880Heodo
2020-06-09 16:10:48651c1db9cd7eb0dbb4bf6077119fe99cVirustotal results 8 / 67 (11.94%) 220.128.125.1880Heodo
2020-06-08 15:59:001cf3d635501c631671e4971c49f0bd48n/a220.128.125.1880Heodo
2020-06-06 14:20:513e7de6b3214b0cb7455ea9977e2b5da6Virustotal results 40 / 72 (55.56%) 220.128.125.1880Heodo
2020-06-04 20:16:598b446e26cffad075be98c10129d6fd0fn/a220.128.125.1880Heodo
2020-05-27 21:47:2344000df08573a0f5238e5b4b34691dbcVirustotal results 18 / 72 (25.00%) 220.128.125.1880Heodo
2020-05-25 19:52:33130d45b94e57e39f704670624f46c71fVirustotal results 8 / 72 (11.11%) 220.128.125.1880Heodo
2020-05-21 20:44:043ad0915a6d05734857a784bded185d1dVirustotal results 40 / 72 (55.56%) 220.128.125.1880Heodo
2020-05-16 23:00:1475a810e739aaef6e1464b633dee7cb91n/a220.128.125.1880Heodo
2020-05-10 07:39:203035957fdfd9efa045a66f5e40913f61n/a220.128.125.1880Heodo
2020-05-02 18:40:55337288dfdf00679882abad5d47762ebdVirustotal results 13 / 71 (18.31%) 220.128.125.1880Heodo
2020-04-16 20:49:589f29eaa5279a8dbfa7a83774927262beVirustotal results 6 / 70 (8.57%) 220.128.125.1880Heodo
2020-03-26 18:46:32388d43258d2901189fb31fa5296688d0Virustotal results 5 / 72 (6.94%) 220.128.125.1880Heodo
2020-03-17 06:40:5116011c81aa1687a2f433ebc19459ed61n/a220.128.125.1880Heodo

# of malware samples: 24