Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 220.213.79.166. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:220.213.79.166
Hostname:g166.220-213-79.ppp.wakwak.ne.jp
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS9595
AS name:XEPHION NTT-ME Corporation
Country:- JP
First seen:2020-04-09 15:34:08 UTC
Last seen:2020-05-09 13:32:18 UTC
Last online:2020-04-26

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-05-10 07:39:203035957fdfd9efa045a66f5e40913f61n/a220.213.79.166443Heodo
2020-05-01 06:01:1684677c72a0b4c7d9055b94d4c26675b0Virustotal results 42 / 72 (58.33%) 220.213.79.166443Heodo
2020-04-16 20:49:589f29eaa5279a8dbfa7a83774927262beVirustotal results 6 / 70 (8.57%) 220.213.79.166443Heodo
2020-04-09 15:46:024a2ea7ddf4516685e7c207e54223d8f1n/a220.213.79.166443Heodo

# of malware samples: 4