Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 31.167.109.122. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:31.167.109.122
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS35819
AS name:MOBILY-AS Etihad Etisalat Company (Mobily)
Country:- SA
First seen:2019-03-22 01:21:34 UTC
Last seen:2019-03-23 20:00:51 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-03-25 22:33:352f12956d90aad66be284275db5e046eaVirustotal results 35/65 (53.85%) 31.167.109.12280Heodo
2019-03-24 02:46:02a9f70e7bd1a57c68bdd5593ad6f4329eVirustotal results 42/67 (62.69%) 31.167.109.12280Heodo
2019-03-24 02:04:45eabe25eaa76205ffb60c2e22eaf279bdVirustotal results 44/64 (68.75%) 31.167.109.12280Heodo
2019-03-22 09:21:032b78faba90ea6ea8cbbff90c74d8cba3Virustotal results 12/66 (18.18%) 31.167.109.12280Heodo

# of malware samples: 4