Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 221.161.206.22. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:221.161.206.22
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS4766
AS name:KIXS-AS-KR Korea Telecom
Country:- KR
First seen:2020-11-05 13:48:14 UTC
Last seen:2020-11-13 15:41:10 UTC
Last online:2020-11-13

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-11-13 20:43:12c92a3d2d501144bfdfd0ff1d399c3498n/a221.161.206.22443Heodo
2020-11-12 14:39:413e9247da27a32b833d36d9341a816b20n/a221.161.206.22443Heodo
2020-11-11 13:04:45e03c8d883122e8928cde5e41c700866cn/a221.161.206.22443Heodo
2020-11-10 04:39:453fba531e956e672a37de4839766742fen/a221.161.206.22443Heodo
2020-11-07 04:01:579f33fa31ccf279fd33924a55ebd68c6dVirustotal results 36 / 72 (50.00%) 221.161.206.22443Heodo
2020-11-06 21:04:17235bca6a815b595176f44c5456eb07d6Virustotal results 35 / 70 (50.00%) 221.161.206.22443Heodo
2020-06-22 07:48:06cb175f2386530af15b1c9bcf951d5e7bVirustotal results 11 / 71 (15.49%) 221.161.206.22443

# of malware samples: 7