Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 50.251.171.165. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:50.251.171.165
Hostname:50-251-171-165-static.hfc.comcastbusiness.net
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS7922
AS name:COMCAST-7922
Country:- US
First seen:2020-02-04 07:50:20 UTC
Last seen:2020-06-05 09:22:39 UTC
Last online:2020-02-20

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2020-06-06 21:14:3151bf62ce37949e6104ebf014c38b7161Virustotal results 49 / 73 (67.12%) 50.251.171.16580Heodo
2020-03-02 15:26:44ec1d1505337b1fbf392b9a3e8741d1deVirustotal results 31 / 72 (43.06%) 50.251.171.16580Heodo
2020-02-05 21:15:2868088dcf91f9b7010ed90c6ed078bcbfVirustotal results 21 / 72 (29.17%) 50.251.171.16580Heodo
2020-02-05 20:28:054b9fe01f2c988e865dd948c386c868a6Virustotal results 24 / 71 (33.80%) 50.251.171.16580Heodo
2020-02-04 13:21:2810ffadf1ceb0a5f8348a010763add58bVirustotal results 22 / 71 (30.99%) 50.251.171.16580Heodo
2020-02-04 11:13:17e43bf311fea529def42f13d2a0492a14Virustotal results 22 / 62 (35.48%) 50.251.171.16580Heodo
2020-02-04 11:02:05c46c7a4e8f75dcd3066eaf7f7242036dVirustotal results 21 / 70 (30.00%) 50.251.171.16580Heodo
2020-02-04 11:01:0156791cfdb1c914d66a8d7ee9d7c338afn/a50.251.171.16580Heodo
2020-02-04 08:33:1217224509e4c5b27fbfd6c2112ca5d584n/a50.251.171.16580Heodo
2020-02-04 08:21:008542d43d2f5f13f20138271cca3670bdVirustotal results 21 / 62 (33.87%) 50.251.171.16580Heodo

# of malware samples: 10