Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 42.115.105.246. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:42.115.105.246
Hostname:n/a
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS131178
AS name:KINGCORP-KH OpenNet ISP Cambodia
Country:- KH
First seen:2019-03-05 15:16:26 UTC
Last seen:2019-03-08 03:26:42 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-03-12 17:57:272a06842085a57693528f3491e1f1da2fVirustotal results 15/68 (22.06%) 42.115.105.2467080Heodo
2019-03-08 20:44:397cae94db8795aa9482596cc36397eb35Virustotal results 40/63 (63.49%) 42.115.105.2467080Heodo
2019-03-08 14:46:01d89bbcc3c832689eb43cc42ea218f3d6Virustotal results 42/65 (64.62%) 42.115.105.2467080Heodo
2019-03-06 11:24:420485a652a715b926c94e275bc51e8b3aVirustotal results 14/66 (21.21%) 42.115.105.2467080Heodo
2019-03-06 01:35:59f63cf59e57b0e409ce9ae76ec0c1d710Virustotal results 35/64 (54.69%) 42.115.105.2467080Heodo
2019-03-06 00:05:22bab93e3ef552c316834d93713c91547cVirustotal results 11/65 (16.92%) 42.115.105.2467080Heodo
2019-03-05 23:20:2015b458b782977308c9c745a5c8d2b5bbVirustotal results 21/67 (31.34%) 42.115.105.2467080Heodo
2019-03-05 22:51:330f43b59a79a8bba4ed7d95bb38f8fe54Virustotal results 17/71 (23.94%) 42.115.105.2467080Heodo
2019-03-05 22:22:03a45a6af51da01721d7849a7b09809b98Virustotal results 15/66 (22.73%) 42.115.105.2467080Heodo
2019-03-05 19:09:2268c5f311255da26563a3dbbb0e075695Virustotal results 48/71 (67.61%) 42.115.105.2467080Heodo
2019-03-05 17:41:527a554264c00cf152210512c773e7ab29Virustotal results 16/67 (23.88%) 42.115.105.2467080Heodo

# of malware samples: 11