Browse Botnet C&Cs

You are currently viewing the database entry for the Heodo botnet command&control server (C&C) 64.228.72.40. You can get additional information about this C&C here, such as first seen, last seen and associated malware samples.

Database Entry


Host:64.228.72.40
Hostname:malton2341w-lp130-02-64-228-72-40.dsl.bell.ca
Status:Offline
Spamhaus SBL:Not listed
Malware:Heodo -
AS number:AS577
AS name:BACOM - Bell Canada
Country:- CA
First seen:2019-02-22 15:14:28 UTC
Last seen:2019-03-06 00:23:24 UTC

Malware Samples


The table below documents all malware samples associated with this Heodo botnet command&control server (C&C).

Timestamp (UTC)Malware Sample (MD5 hash)VTHostPortSignature
2019-03-22 13:44:15a4427dc73ea7dc9061ea50daa1ca043aVirustotal results 45/68 (66.18%) 64.228.72.407080Quakbot
2019-03-06 23:46:3339752d08b7976e2d44bff7cd78f4d63eVirustotal results 43/71 (60.56%) 64.228.72.407080Heodo
2019-03-05 14:25:524db30d9c6f3c4fa37747f98d96c80d5eVirustotal results 38/64 (59.38%) 64.228.72.407080Heodo
2019-02-26 16:55:41ab772668257e81cf00d5291470f54581Virustotal results 21/51 (41.18%) 64.228.72.407080Heodo
2019-02-26 16:41:37b954ff715273edab9a30255289139fc9Virustotal results 21/51 (41.18%) 64.228.72.407080Heodo
2019-02-26 16:38:28baff7206fd6475e3f28a7a7d5cb8803fVirustotal results 23/54 (42.59%) 64.228.72.407080Heodo
2019-02-26 16:28:0504c49b54ff9029af84b1a8c62d34e9a8Virustotal results 13/56 (23.21%) 64.228.72.407080Heodo
2019-02-26 16:26:175cdfd7f0918cc6b4943ac45b5c65e2a0Virustotal results 10/58 (17.24%) 64.228.72.407080Heodo
2019-02-26 15:25:35e5d2056ea8a9cd25b11119f9e105d162Virustotal results 19/67 (28.36%) 64.228.72.407080Heodo
2019-02-26 15:21:372cee78a58efcd9e7c5315da6d72fe156Virustotal results 17/69 (24.64%) 64.228.72.407080Heodo
2019-02-26 15:16:34c06206965f84ce469d9500a892cfc134Virustotal results 10/57 (17.54%) 64.228.72.407080Heodo
2019-02-26 10:57:216e9d8f99ec5f804e3d55135c3f9e5c48Virustotal results 23/69 (33.33%) 64.228.72.407080Heodo

# of malware samples: 12