Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 50.101.180.172. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:50.101.180.172
Hostname:mtrlpq2314w-lp140-01-50-101-180-172.dsl.bell.ca
Status:Offline
Spamhaus SBL:SBL446162
Malware:Heodo -
AS number:AS577
AS name:BACOM - Bell Canada
Country:- CA
First seen:2019-04-22 14:18:13 UTC
Last seen:2019-06-13 06:58:11 UTC
Last online:2019-05-24

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-06-13 07:43:084a51b449d7d9e009196c5e84ae7ba91cVirustotal results 57/70 (81.43%) 50.101.180.1727080Heodo
2019-04-27 02:31:14d41d62980ac2d311fde64d3aa09f4273Virustotal results 49/67 (73.13%) 50.101.180.1727080Heodo
2019-04-25 17:33:0590b876b550a1ba724ea682c81616c25fVirustotal results 27/67 (40.30%) 50.101.180.1727080Heodo

# of malware samples: 3